Trail Of Destruction 2.0
(Backdoor.Win32.TrialDest.b)
(Backdoor.Win32.TrialDest.c for Temp.exe)

by Broken Death

Written in Visual Basic

Released in June 2003

more versions


The following is a quick list of features available to
use with TODv2:

- Screen Capturing
- Key Logging
- Error Messaging
- System Information Retriever
- Context menu Editor
- File Uploading
- File Downloading
- Hard Disk Drive Browsing
- Process / Task Killer
- Desktop Manipulation
- Windows Shutdown Features
- CD Drive Opening / Closing
- Webpage Browsing
- Various Other Window's / Screen Features

- New "PC Torment" Features

+ Heapz more.....

Other Features and improvements
-------------------------------

Apart from the above features, there are also so new features
and improvements i have made for TODv2.

TODv2 now use's NEW PORT TECHNOLOGY! No longer are the days of
servers with set port numbers, in TODv2 you will experience the
use of random port selection! This small feature helps make the
server harder to block on the remote pc and improves stability!

NEW SERVER INFECTION METHODS! TODv2 also incorporates a new 
and majorly detailed infection routine making the server 100% 
more stable and is also one tough mother fucker to remove from
the remote pc!!!!!!

Broken Death


Server:
c:\WINDOWS\CSRSS.EXE 

size: 283.979 bytes

port: varable

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "csrss.exe" 
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "EXPLORER.exe" 

files added:
c:\Program Files\Common Files\Explorer.exe 
c:\Program Files\Common Files\Devbkem32.dll 
c:\WINDOWS\Bmp2Jpeg.dll 
c:\WINDOWS\dsacx.dat 
c:\WINDOWS\SYSTEM\Bmp2Jpeg.dll 
c:\WINDOWS\SYSTEM32\Bmp2Jpeg.dll 
c:\WINDOWS\TEMP\Devbkem32.dll 
c:\WINDOWS\TEMP\Temp.exe 

registry added:
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\System "DisableTaskMgr" 

MegaSecurity