Backdoor.Win32.Delf.fd
(Backdoor.Win32.Delf.fd)

by ?

Original Filename unknown

Written in Delphi

more in this category


dropped files:
c:\WINDOWS\explorer32.exe        Size: 197,632 bytes 
c:\WINDOWS\system\sistray.exe    Size: 197,632 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Sistray"
data: C:\WINDOWS\system\sistray.exe 

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "System32"
data: C:\WINDOWS\explorer32.exe 
	
	
	
tested on Windows XP
February 25, 2006

MegaSecurity