ProtG 1.04
(Backdoor.Win32.Agent.oz)

by Gangrel

Written in C++

Released in September 2005

more versions





Server:
dropped file:
c:\WINDOWS\system32\ServidorTcp.exe
size: 39,827 bytes 
	
port: 8998 TCP

added to registry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "ServTcp"
	

tested on Windows XP
September 24, 2005

MegaSecurity