EEYE (b)
(Backdoor.Win32.EEYE.b)

by ?

Written in Delphi

Released in January 2001

more versions


Backdoor.EEYE.b:

port: 113 TCP

dropped files:
c:\WINDOWS\hh.pif       size: 15.872 bytes 
c:\WINDOWS\Windows.exe  size: 15.872 bytes 

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "Windows"
data: C:\WINDOWS\SYSTEM\Windows.exe 

does try to connect to an IRC server

MegaSecurity