Syphillis


Name: Syphillis
Aliases: Backdoor.Syphillis, ICQ.Syphillis,
Ports: 10084, 10084 (UDP), 10085, 10086
Files: Syph.zip - 744,210 bytes Syphillis1.18.zip - 644,990 bytes Syphillis.exe - 1,005,056 bytes Masterserver.exe - 361,984 bytes Syphillis$$$ - 4,991 bytes Syphillis.dsk - 4,737 bytes Syphillis.dpr - 4,345 bytes Syphillisserver.dpr - 317 bytes Shell32.exe - Factorystub.exe -
Created: Nov 1999
Requires: Packet32.dll - is required to run the trojan.
Actions: Remote Access / ICQ trojan / Virus dropper
Registers: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\
Notes: Works on Windows 95 and 98, together with ICQ. Also uses Telnet as client. The Zip-file´s password =
Country: written in Canada
Program: Written in Delphi 4.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>