GrayPigeon 2.0 Server
(Backdoor.Win32.Delf.aeo)

by ?

Written in Delphi, compressed with UPX

more versions


dropped file:
c:\WINDOWS\G_Server2.0.exe
size: 308,224 bytes 

added to registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\Root\LEGACY_GRAYPIGEONSERVER2.0
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\GrayPigeonServer2.0
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_GRAYPIGEONSERVER2.0
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\GrayPigeonServer2.0



tested on Windows XP
November 03, 2005
 
MegaSecurity