Bluntman 4.20
(Backdoor.Win32.Bluntman.420)

by bluntman




Server:
dropped file:
c:\WINDOWS\SYSTEM32\QTASKS.exe 

size: 42.016 bytes 

port: 113 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "Win32_" 

MegaSecurity