Trojan/Backdoor Detection - Doly 2.0

Critical Nessus Network Monitor Plugin ID 6224


The remote host has been compromised and is running a 'Backdoor' program


The remote host seems to be running a trojan or 'backdoor' program - Doly 2.0. This is typically an indicator that the machine has been compromised and is now being remotely controlled


As the system appears to be compromised, you should both inspect and manually clean the remote system.

Plugin Details

Severity: Critical

ID: 6224

Family: Backdoors

Published: 2012/01/06

Modified: 2016/11/23

Risk Information

Risk Factor: Critical