Boiling
(Backdoor.Win32.Boiling)

by Hitech

Released in June 2001

Made in China


Client:
port: 4368 TCP


Server:
dropped file:
C:\WINDOWS\SYSTEM\INTRANET.EXE

size: 463 KB

port: 4359

startup:
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\
 
MegaSecurity