Deep Throat Server (f)
(Backdoor.Win32.DeepThroat.f)

by ^Cold^

more versions




Server:
dropped file:
c:\WINDOWS\systray.exe
size: 192.406 bytes 

port: 2140, 3150 UDP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "SystemTray"
old data: SysTray.Exe 
new data: c:\windows\systray.exe 



tested on Windows 98
May 01, 2005

MegaSecurity