 |
|
TCP_RUX the Tick get windows directory attempt
|
| |
Code:
p341
Severity: Warning
Description: This event is generated when an attacker attempts to find the victim's
Windows directory with the RUX the Tick trojan.
Impact:
If successful, the attacker would gain unauthorized access to your
system, enabling him to upload and execute file on your computer. The
attacker can use this function to upload additional backdoors to the
victim's sytem and execute them.
Corrective: Using Windows Task Manager, kill these processes: ruxserver.exe and
server.exe. Use Windows Explorer to find ruxserver.exe and delete the file.
Keep your anti-virus programs updated with the latest definitions.
|