Trojan/Backdoor - Agobot.FO Detection
Critical Nessus Network Monitor Plugin ID 1207
SynopsisThe remote host has a backdoor installed
DescriptionThe remote host has the Agobot.FO backdoor installed. This backdoor is known to scan local networks for common Microsoft vulnerabilities, scan local networks for exploitable DameWare systems, brute force local Microsoft machine User accounts, connect to an IRC channel and setup a BOT for remote command execution.
SolutionThis backdoor should be immediately removed from the infected systems and manually cleaned.