Backdoor.Win32.Delf.hf
(Backdoor.Win32.Delf.hf)

by ?

Original Filename: JoinMe.exe

Written in Delphi, compressed with UPX

more in this category


Backdoor.Win32.Delf.hf:
size: 388.096 bytes

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "directx.exe" 

files added:
c:\%local dir%\JoinMe.conf 
c:\%local dir%\Operators.conf 

registry added:
HKEY_LOCAL_MACHINE\Software\ColdVision "update" 
HKEY_LOCAL_MACHINE\Software\Microsoft\Ras\Tapi Devices 

MegaSecurity