Troyano De Malpayo 1.1
(Backdoor.Win32.Malpayo)

by MaLPaYo

Written in Delphi

Released in July 2002

Made in Mexico


Server:
dropped file:
c:\WINDOWS\SYSTEM32\Sys.exe 

size: 252.928 bytes 

port: 666, 4999 TCP

startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run "System" 

MegaSecurity