MoonLit Virus Backdoor Detection

Critical Nessus Plugin ID 15586

Synopsis

The remote host has a malicious application installed.

Description

The system is infected by the MoonLit virus, the backdoor port is open.

Backdoor.Moonlit is a Trojan horse program that can download and execute files, and may act as a proxy server.

Solution

Ensure all MS patches are applied as well as the latest AV definitions.

See Also

http://www.nessus.org/u?37577ce7

Plugin Details

Severity: Critical

ID: 15586

File Name: moonlit_virus.nasl

Version: $Revision: 1.12 $

Type: remote

Family: Backdoors

Published: 2004/10/30

Modified: 2013/01/30

Risk Information

Risk Factor: Critical

CVSSv2

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C