Backdoor.Win32.Delf.abz
(Backdoor.Win32.Delf.abz)

by ?

Original name unknown

Written in Delphi, compressed with ASPack

more in this category


dropped files:
c:\WINDOWS\error.bat               Size: 112 bytes 
c:\WINDOWS\system32\winlong.exe    Size: 204,288 byte

port: 6868 TCP

startup:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "Winlong"
data: C:\Windows\system32\winlong.exe 



tested on Windows XP
January 14, 2006

MegaSecurity