by NOIR
Compressed with UPX
Released in July 2004
Made in China
Server: dropped files: c:\WINDOWS\system32\DrakStorm..dll size: 200 bytes added to registry: HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_DNSCNSVC HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_DNSCNSVC\0000 HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_DNSCNSVC\0000\Control HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DNScnsvc HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DNScnsvc\Enum HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\DNScnsvc\Security HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNSCNSVC HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNSCNSVC\0000 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DNSCNSVC\0000\Control HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DNScnsvc HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DNScnsvc\Enum HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\DNScnsvc\Security tested on Windows XP February 17, 2005MegaSecurity