Shell_Me 0.6
(Backdoor.Win32.Delf.zs)

by Eb0La

Written in Delphi

Released in May 2005

Made in France




Server:
dropped files:
c:\WINDOWS\system32\Syst32.exe      Size: 61,440 bytes 
c:\WINDOWS\system32\SystemFile.exe  Size: 296,448 bytes 

port: 2005 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "SystemFile"
data: C:\WINDOWS\System32\SystemFile.exe
	
	
	
tested on Windows XP
May 21, 2005

MegaSecurity