MoonLit Virus Backdoor Detection

critical Nessus Plugin ID 15586

Synopsis

The remote host has a malicious application installed.

Description

The system is infected by the MoonLit virus, the backdoor port is open.

Backdoor.Moonlit is a Trojan horse program that can download and execute files, and may act as a proxy server.

Solution

Ensure all MS patches are applied as well as the latest AV definitions.

See Also

http://www.nessus.org/u?37577ce7

Plugin Details

Severity: Critical

ID: 15586

File Name: moonlit_virus.nasl

Version: Revision: 1.12

Type: remote

Family: Backdoors

Published: 10/30/2004

Updated: 1/30/2013

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C