DSE
(Backdoor.Win32.DSE)

by ?

Written in Delphi, compressed with PECompact




dropped files:
c:\WINDOWS\system32\dcfg.dat      Size: 15,944 bytes 
c:\WINDOWS\system32\dtsk.dat      Size: 994 bytes 
c:\WINDOWS\system32\exmgr.exe     Size: 73,796 bytes 
c:\WINDOWS\system32\winapi.dll    Size: 38,668 bytes 
c:\WINDOWS\system32\winapi.log    Size: 240 bytes 

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "MS Messeger"
data: C:\WINDOWS\System32\exmgr.exe 

HKEY_CURRENT_USER\Software\Microsoft\Windows\ShellNoRoam\MUICache "C:\Documents and Settings\Kobayashi\Desktop\Backdoor.Win32.DSE.EXE"
data: Backdoor.Win32.DSE 

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "MS Messeger"
data: C:\WINDOWS\System32\exmgr.exe 


tested on Windows XP
October05, 2005

MegaSecurity