DarkSky 1.0
(Backdoor.Win32.DarkSky.10)

by Darksky

Written in Visual C++, compressed with UPX

Released in August 2000

Made in China

more versions


Client:
size: 138.752 bytes



Servers:
C:\WINDOWS\SYSTEM\NOTEPAD.EXE
C:\WINDOWS\SYSTEM\IEXPLORE.EXE

size: 10.752 bytes

startup:
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices
HKCR\txtfile\shell\open\command

MegaSecurity