Backdoor.Win32.Delf.qa
(Backdoor.Win32.Delf.qa)

by ?

Original Filename unknown

Written in Delphi

more in this category


dropped files:
c:\WINDOWS\DirectX3D.exe    Size: 766,994 bytes 
c:\WINDOWS\keylog.gzs       Size: 52 bytes 

port: 110, 24785, 44751 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "WindowsXP Module"
data: C:\WINDOWS\DirectX3D.exe 



tested on Windows XP 
December 17, 2005

MegaSecurity