BiG-Lamer
(Trojan.Win32.Genome.jxm)

by BlanKet

Written in Visual Basic

Released in June 2007


Server:
dropped file:
c:\WINDOWS\system32\system32.exe
size: 94,208 bytes 

port: 999 TCP

startup:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run "system332"
data: C:\WINDOWS\system32\system32.exe 



tested on Windows XP
July 17, 2007

MegaSecurity