Attack (Attack ID:100014)

Release Date05/20/2011

Attack NameCrazzy Net V3.7 connection established

OS Type

Application Type

Severity

BUG ID

CVE ID

 

Description

The Trojan changes system registry settings to add the Amanda sever toprograms normally started on boot. Due to the nature of this Trojan itis unlikely that the attacker's client IP address has been spoofed.

Impact:
Possible theft of data and control of the targeted machine.

Affected Systems:
Windows 95
Windows 98
Windows ME
Windows NT
Windows 2000
Windows XP

 

Solution

Use available tools to remove the Trojan.