CMD BackDoor 1.0
(Trojan.PSW.LionDumper)

by Lion

NT/Win2000 Password Dumper & CMD BackDoor v1.0

Released in november 2002

Made in China


Trojan.PSW.LionDumper is a Trojan horse that tries to steal passwords. 
It adds a new user, who has administrator rights, to the system. 
The Trojan comes disguised as a Windows NT/2000 password dumper utility. 
(A password dumper is a tool that is used by hackers.)
The Trojan functions only if the user who executed it has administrator rights.
It tries to add a new user with the name ISUR_IWAM, add it to Local Administrators group,
and set a default password for it.
(Symantec)

added:
c:\WINNT\Passwd.txt 

MegaSecurity