PowerSpider 4.10
(Backdoor.Win32.PowerSpider.410)

by MiniSnake

Written in Visual C++, compressed with PECompact

Made in China

more versions


dropped files:
c:\WINDOWS\system32\iexplore.exe    Size: 49,664 bytes 
c:\WINDOWS\system32\psinthk.dll     Size: 1,624 bytes 

startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "mssysint"
data: iexplore.exe 


tested on Windows XP
January 28, 2006

MegaSecurity