Towerman 2007 Fly
(Trojan-Spy.Win32.Delf.uc)

by ?

Written in Delphi

Released in February 2007

Made in China

more versions

 


Server
dropped file:
c:\WINDOWS\system32\Systen.dll
size: 125,440 bytes 

added to registry:
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\BITS
HKEY_LOCAL_MACHINE\SOFTWARE\Tencent\QQ "Tencent"


tested on Windows XP
February 15, 2007

MegaSecurity