BiG BeN GG 2.1b
(Backdoor.Win32.Reload.h for Server)

by BoBi

Written in Delphi

Released in September 2005

Made in Poland

more versions


Server:
dropped file:
c:\WINDOWS\system32\smss32.exe
size: 857,191 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "smss32"
data: C:\WINDOWS\system32\smss32.exe 


	
tested on Windows XP
September 13, 2005

MegaSecurity