Remote Revise 1.6 beta
(Backdoor.Win32.Revise.16)

by W@SyL

Server is written in Delphi

Compressed with UPX

Released on October 11, 2001

Made in Poland

more versions


Server:
dropped file:
C:\WINDOWS\SYSTEM\systray32c.exe 

size: 553 KB

port: 4545 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunServices "SysTray32" 

MegaSecurity