TROJAN: Remote Explorer Connection

This signature detects Remote Explorer traffic on common ports. Attackers can use Remote Explorer to control a Windows host using methods similar to VNC.

Extended Description

Remote Explorer is designed to allow an administrator to monitor all server activities in real time and perform remote administration. If abused, it could become a hacking tool.

Short Name
TROJAN:REMOTE-EXPLORER:CONNECT
Severity
Minor
Recommended
False
Recommended Action
None
Category
TROJAN
Keywords
CVE-1999-0660 Connection Explorer Remote
Release Date
10/14/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
Port
TCP/5630-5650
False Positive
Unknown
CVSS Score

8.8

Found a potential security threat?