Spy Logger 2007
(Trojan-Spy.Win32.Banker.fcp)

by Spy Future

Released in July 2007

Made in Brazil


Server
Dropped File:
c:\WINDOWS\spylog.ini               Size: 30 bytes 
c:\WINDOWS\system32\svchostt.exe    Size: 582,144 bytes 

Startup:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "kernell32"
Data: C:\WINDOWS\system32\svchostt.exe 



Tested on Windows XP
December 30, 2007

MegaSecurity