TROJAN: BackOrifice Connection Request
This signature detects attempts to connect to port 31337. This can indicate that an attacker is using the Trojan Back Orifice to remotely control the system.
Extended Description
BackOrifice is a remote adminstration tool. It enables remote attackers to gain control over an infected machine.
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3