manSlut Uploader 1.0 rc4
(Backdoor.Win32.Delf.me)

by akcom

Written in Delphi

Released in April 2004

more versions


manslut uploader v1 rc4 by akcom
compiled 4/6/2004

this a reverse connection sin trojan... um... thats it
public beta #1
beta #4

keep in mind...
1)	the server field in the editor should/can be a dynamic dns address that you have the backdoor connect
	or a static address (not recommended)

2)	remote file in upload and download can include the following strings: %WINDIR%, %SYSDIR%, %TMPDIR%.
	they will be translated accordingly, (ie %WINDIR%\test.exe = C:\Windows\test.exe)

3)	clicking on a client will 'activate' the client, bringing up all its information (proc list, sys info, remote cmd, etc)

4)	to stop a remote cmd prompt just send 'exit' w/o the quotes

5)	you will need to open 61804, the transfer port (displayed at runtime), and whatever port you select for the
	backdoor to connect on

6)	the server uses the Active Setup startup method with a randomly generated GUID (reduce sig)

akcom



MegaSecurity