TROJAN: Crazzynet Initial Server Response

This signature detects the initial response a Crazzynet backdoor server sends when it receives a connection. Detecting this response can indicate that your system is infected with the Crazzynet backdoor Trojan. Using the Crazzynet client, attackers can gain unauthorized access to the host computer and execute malicious operations.

Extended Description

Crazzynet allows remote attackers to control infected systems.

Short Name
TROJAN:MISC:CRAZZYNET-SRV-RESP
Severity
Major
Recommended
False
Recommended Action
Drop
Category
TROJAN
Keywords
CVE-1999-0660 Crazzynet Initial Response Server
Release Date
01/14/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
Port
TCP/17499-17500
False Positive
Unknown
CVSS Score

8.8

Found a potential security threat?