Almetyevsk (a)
(Backdoor.Win32.Almetyevsk.a)

by ?

Written in Delphi


more versions




dropped file:
c:\WINDOWS\system32\internat32.exe
size: 372,224 bytes 

port: 567 TCP

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "Internat32"
data: C:\WINDOWS\System32\internat32.exe 




tested on Windows XP
August 01, 2005

MegaSecurity