by ?
Written in Microsoft Visual C++
Backdoor.Sinit.e: dropped file: c:\WINDOWS\system32\svcinit.exe size: 139.264 bytes port: 53 TCP & UDP startup: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon "Userinit" old data: C:\WINDOWS\system32\userinit.exe, new data: C:\WINDOWS\System32\userinit.exe,C:\WINDOWS\System32\svcinit.exe tested on Windows XPMegaSecurity