UDP_win_trin00 connection attempt

 

Code: p358

Severity: Warning

 

Description: This event is generated when an attacker attempts to connect to a Trinoo DDoS Trojan server.

Impact: Possible Distributed Denial of Service.

Corrective: Disallow Telnet access from external sources. Use SSH as opposed to Telnet for access from external locations Delete the Trojan and kill any associated processes.