"i suspect bindtty is just a bindshell that opens port 5299 and allows people to connect to your server as whatever user the program is run at..
if its in an ikonboard dir i expect they've hacked you via some insecure script and got in as your httpd uid. might be worth doing a further search around your system to see if they've done anything else"
found with Google.