Backdoor.Win32.Delf.ax
(Backdoor.Win32.Delf.ax)

by ?

Real name is unknown

Written in Delphi

Released in April 2002

more in this category


dropped file:
c:\WINDOWS\iMsdxms.exe 

size: 91.648 bytes
 
port: 871, 872 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "IDXMS Controller" 

added:
c:\WINDOWS\iMsdxms.dat 

MegaSecurity