Winker (f)
(Backdoor.Win32.Winker.f)

by ?

The given name "winker" is derived from "WinKernal"

Written in Visual C++, compressed with ASPack

Made in China

more versions


dropped files:
c:\WINDOWS\SYSTEM\hello.exe  size: 35.333 bytes 
c:\WINDOWS\SYSTEM\iexplore.dll 

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "systhread" 

MegaSecurity