PlugHackers Trojan 1.1
(Backdoor.Win32.Delf.yq)

by BlooDHounD

Written in Delphi

Released in July 2006

more versions


Server:
dropped files:
c:\LSASS.exe    Size: 418,304 bytes 
c:\pass.h       Size: 0 bytes 

startup;
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "DLLHost"
data: C:\LSASS.exe 




tested on Windows XP
August 01, 2006

MegaSecurity