- Discovered:
- March 11, 2003
- Updated:
- February 13, 2007 11:44:12 AM
- Also Known As:
- trojan LittleWitch v6.1
- Type:
- Trojan Horse
- Systems Affected:
- Windows 2000, Windows 95, Windows 98, Windows Me, Windows NT, Windows XP
Backdoor.LittleWitch.C is a backdoor Trojan that is similar to Backdoor.LittleWitch.B. This Trojan gives an attacker unauthorized access to a compromised computer. The presence of the file, Rundll.exe, in the %System% folder is an indicator of a possible infection.
By default, Backdoor.LittleWitch.C opens both TCP and UDP ports 31,320 on the infected computer.
Backdoor.LittleWitch.C is a Delphi application. Unlike Backdoor.LittleWitch.B, Backdoor.LittleWitch.C is not packed.
NOTE: %System% is a variable. The Trojan locates the System folder. By default, this is C:\Windows\System (Windows 95/98/Me), C:\Winnt\System32 (Windows NT/2000), or C:\Windows\System32 (Windows XP).
Antivirus Protection Dates
- Initial Rapid Release version March 12, 2003
- Latest Rapid Release version March 3, 2008 revision 035
- Initial Daily Certified version March 12, 2003
- Latest Daily Certified version March 3, 2008 revision 037
- Initial Weekly Certified release date March 12, 2003
Click here for a more detailed description of Rapid Release and Daily Certified virus definitions.
Threat Assessment
Wild
- Wild Level: Low
- Number of Infections: 0 - 49
- Number of Sites: 0 - 2
- Geographical Distribution: Low
- Threat Containment: Easy
- Removal: Easy
Damage
- Damage Level: Low
Distribution
- Distribution Level: Low
Writeup By: Jason Pan



