Ketch (j)
(Backdoor.Win32.Ketch.j)

by I.R.W.W.

Written in Microsoft Visual C++, compressed with FSG

more versions




size: 121,232 bytes

added to registry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "sysmon"
data: C:\WINDOWS\System32\sysmon44.exe 


tested on Windows XP
October 31, 2005

MegaSecurity