Kpdo Trojan
(Not detected by KAV on February 12, 2009)

by Kpdo

Released in October 2008

Made in Brazil




Server
Dropped File:
c:\WINDOWS\system32\Isass.exe
Size: 446,464 bytes 

Startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "ctfmon"
Data: C:\WINDOWS\system32\ctfmon.exe 
	
	

Tested on Windows XP
February 12, 2009

MegaSecurity