Whirlpool


Name: Whirlpool
Aliases: Backdoor.Whirlpool, Backdoor.AKR,
Ports: 3721, 8848, 8864
Files: Internat.dic - Notepad.jmp - - 509,440 bytes
Created: Aug 2002
Requires:
Actions: Remote Access
Registers: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
HKEY_CLASSES_ROOT\txtfile\shell\open\command\
HKEY_CLASSES_ROOT\
Notes: Works on Windows.
Country: written in China
Program: Written in Delphi.

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>