Galaxy remote manager
(Backdoor.Win32.Galaxy)

by wollf

Written in Visual C++, compressed with UPX

Released in December 2001


Dropped file:
C:\WINDOWS\SYSTEM\grm.exe 

size: 39,936 bytes

port: 7614 TCP
              
startup: 
HKLM\Software\Microsoft\Windows\CurrentVersion\RunServices 

MegaSecurity