by Grupo BeLio
Written in Visual C++
Made in Spain (?)
Server: dropped file: c:\WINDOWS\system32\Backdoor.Win32.Belio.11.exe size: 206,336 bytes startup: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "servonce" data: C:\WINDOWS\System32\Backdoor.Win32.Belio.11.exe port: 1977 TCP tested on Windows XP April 24, 2005MegaSecurity