BLA trojan


Name: BLA trojan
Aliases:
Ports: 666, 1042, 1042 (UDP), 20331
Files: Dbla.zip - 307,489 bytes Bla.zip - 305,115 bytes Bla1.0.zip - 310,684 bytes Bla20.zip - 615,572 bytes Bla40.zip - 603,821 bytes Bla5.01.zip - Bla502.zip - Bla503.zip - 838,477 bytes Bla51.zip - Trojan.exe - 64,658 bytes Trojan.exe - 91,032 bytes Blaclient.exe - 1,359,360 bytes Bla(client).exe - 1,342,976 bytes Bla501 tcp proxy.exe - Bla501trojan.exe - Blaclient.exe - Blaclient2.exe - Blaaaaa.exe - 1,284,096 bytes Blaaaaa.exe - 1,330,688 bytes Msv32.dll - 64,658 bytes Msv32.dll - 144,896 bytes Msv32-1.dll - Scanirc.exe - 303,616 bytes
Created: Mar 1999
Requires:
Actions: Remote Access / Steals passwords / Hacking tool
The client also drops a server! The hacker could choose to logpasswords only or all text written. One of the functions is to killantivirus software.
Versions: 1.0, 1.1, 2.0, 4.0, 5.01, 5.02, 5.03, 5.1,
Registers: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\
Notes: Works on Windows 95 and 98.
Country: written in France
Program:

© Copyright von Braun Consultants. This information may include technical inaccuracies or typographical errors. If you have any questions or further information about the actual trojan above, please contact Joakim von Braun at <joakim.von.braun@risab.se>