Home / malwarePDF  

Linux.Kerlisen


First posted on 18 December 2015.
Source: Symantec

Aliases :

There are no other names known for Linux.Kerlisen.

Explanation :

When the Trojan is executed, it opens a back door and listens for connections on port 40101.

The Trojan may then perform the following actions: Open a pseudo terminalRead, write, and delete files

Last update 18 December 2015

 

TOP