Trin00 Trojan Detection

critical Nessus Plugin ID 10288

Synopsis

The remote host has been compromised.

Description

The remote host appears to be running Trin00, a Trojan Horse that can be used to control your system or make it attack another network (this is actually called a Distributed Denial Of Service attack tool).

It is very likely that this host has been compromised.

Solution

Restore your system from backups, contact CERT and your local authorities.

Plugin Details

Severity: Critical

ID: 10288

File Name: trinoo.nasl

Version: 1.26

Type: remote

Family: Backdoors

Published: 2/5/2000

Updated: 4/11/2022

Configuration: Enable thorough checks

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Information

Required KB Items: Settings/ThoroughTests

Vulnerability Publication Date: 2/9/2000

Reference Information

CVE: CVE-2000-0138