Korean
<< Back
VID 24067
Severity 40
Port 10
Protocol TCP
Class BackDoor
Detailed Description The Backdoor Fluxay is detected on the Windows system.
Fluxay is a backdoor Trojan affecting Windows NT, Windows 2000, and Windows XP, which allow an unauthorized command shell on an infected computer. It adds itself to the Service list as "PipeCmdSrv" and is password protected to be difficult to stop or remove. A remote attacker can use it to steal passwords, or execute arbitrary commands on a system, once the system is infected.

* References:
http://securityresponse.symantec.com/avcenter/venc/data/backdoor.fluxay.html
http://www.sophos.com/virusinfo/analyses/trojfluxaya.html
http://www.sophos.com/virusinfo/analyses/trojfluxayc.html

* Platforms Affected:
Microsoft Windows Any version
Recommendation Remove it from the infected computer by using a anti-virus program (vaccine program). Refer to the rapter.net web site at www.rapter.net/jm3.htm for more details on removal.
Related URL (CVE)
Related URL (SecurityFocus)
Related URL 13441 (ISS)