Strike total destruction
(Not detected by KAV on February 26, 2008)

by Bartek

Written in Delphi

Released in September 2004

Made in Poland

more in this category




Server:
dropped files:
c:\WINDOWS\system32\dbexpmda.dll    Size: 280,064 bytes 
c:\WINDOWS\system32\OpenGL.exe      Size: 748,109 bytes 


added to registry:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run "OpenGL"
data: C:\WINDOWS\system32\OpenGL.exe 

HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List "C:\Documents and Settings\Kobayashi\Desktop\strike\server.exe"
data: C:\%current dir%\Desktop\strike\server.exe:*:Enabled:OpenGL updater 

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List "C:\Documents and Settings\Kobayashi\Desktop\strike\server.exe"
data: C:\%current dir%\server.exe:*:Enabled:OpenGL updater 
	
	
tested on Windows XP
September 24, 2005