Remote Revise 1.15
(Backdoor.Win32.Revise.115)
(Backdoor.Win32.RemoteRevise.10)

by W@SyL

Written in Visual C++

Compressed with ASPack

Released in September 2000

Made in Poland

more versions


Server:
dropped file:
c:\WINDOWS\SYSTEM\systray32c.exe 

size: 204 KB

port: 4540 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices "SysTray32" 

MegaSecurity