Ketch (f)
(Backdoor.Win32.Ketch.f)

by I.R.W.W.

Written in Microsoft Visual C++, compressed with UPX

more versions




added to registry:
HKEY_LOCAL_MACHINE\SOFTWARE\sysmon

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "sysmon"
Data: C:\WINDOWS\System32\sysmon33.exe 

MegaSecurity