MHT (a)
(Backdoor.Win32.Mhtserv.a)

by ?

Written in Visual C++

Released in March 2001


dropped files:
c:\WINNT\explorer.$xe  size: 319.488 bytes 

c:\WINNT\wininit.ini   size: 152 bytes
data:
[rename]
NUL=C:\WINNT\Explorer.sys
C:\WINNT\Explorer.sys=C:\WINNT\explorer.exe
C:\WINNT\explorer.exe=C:\WINNT\explorer.$xe
NUL=C:\WINNT\explorer.$xe
 
port: 1042 TCP

tested on Win2000

MegaSecurity