Skip to main content

Remote access Trojans

These are probably the most publicized Trojans, because they provide the attacker with total control of the victim's machine.

Examples are the Back Orifice and Netbus Trojans.

The idea behind them is to give the attacker COMPLETE access to someone's machine, and therefore full access to files, private conversations, accounting data, etc.

The Bugbear virus that hit the Internet in September 2002, for instance, installed a Trojan horse on the victims'machines that could give the remote attacker access to sensitive data.

The remote access Trojan acts as a server and usually listens on a port that is not available to Internet attackers.

Therefore, on a computer network behind a firewall, it is unlikely that a remote (off-site) hacker would be able connect to the Trojan (assuming that you have blocked these ports, of course).

HOWEVER, an internal hacker (located behind the firewall) can connect to this kind of Trojan without any problems.

  _________________________

Comments

Popular posts from this blog

How to Connect Two Computers Via Crossover Ethernet Cable?

In this tutorial we are going to show you how to transfer data from one computer to another. We need to PC/Laptop and a crossover cable to transfer data. PC 1 Step1: Go to “Open Networking and Sharing Center“. Step2: Click on “Local Area Connection“. Step3: Now click on “Properties“. Step4: Double click on “Internet Protocol Version 4(TCP/IPv6)“. Step5: Click on “Use the following IP address:” and enter the IP address: as 192.168.1.1 and just give a click onSubnet mask. Once done click “Ok” and close it.   PC 2 Step1: Go to “Open Networking and Sharing Center“. Step2: Click on “Local Area Connection“. Step3: Now click on “Properties“. Step4: Double click on “Internet Protocol Version 4(TCP/IPv6)“. Step5: Click on “Use the following IP address:” and enter the IP address: as 192.168.1.2 and just give a click onSubnet mask. Once done click “Ok” and close it. Now  two computers are connected. To share files we need to give access to our drives, so follow the c

What is Port (computer networking)

In the internet protocol suite, a port is an endpoint of communication in an operating system. While the term is also used for female connectors on hardware devices (see computer port), in software it is a logical construct that identifies a specific process or a type of network service. A port is always associated with an IP address of a host and the protocol type of the communication, and thus completes the destination or origination network address of a communication session. A port is identified for each address and protocol by a 16-bit number, commonly known as the port number. For example, an address may be 'protocol: TCP, IP address: 1.2.3.4, port number: 80', which may be written 1.2.3.4:80 when the protocol is known from context. Specific port numbers are often used to identify specific services. _________________________

Denial of service (DoS) attack Trojans

These Trojans give the attacker the power to start a distributed denial of service (DDoS) attack if there are enough victims. The main idea is that if you have 200 infected ADSL users and you attack the victim simultaneously from each, this will generate HEAVY traffic (more than the victim's bandwidth can carry, in most cases), causing its access to the Internet to shut down. WinTrinoo is a DDoS tool that has recently become very popular; through it, An attacker who has infected many ADSL users can cause major Internet sites to shut down; Early examples of this date back to February 2000, when a number of prominent e-commerce sites such as Amazon, CNN, E*Trade, Yahoo and eBay were attacked. Another variation of a DoS Trojan is the mail-bomb Trojan, where the main aim is to infect as many machines as possible and simultaneously attack specific email address/addresses with random subjects and contents that cannot be filtered. Again, a DoS Trojan is similar to a virus,