Short Name |
TROJAN:BACKORIFICE:EXECUTION |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
TROJAN |
Release Date |
2003/04/22 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects an outgoing e-mail to "funguscrack@hotmail.com" sent using SMTP. This can indicate the system is responding to an attacker to confirm successful installation of the Trojan Back Orifice. Back Orifice enables attackers to access data and gain control over some functions on remote Microsoft Windows systems.
An attacker could be able to take full control of the system.