Content

PWCrack-KerbCrack

Type
Program
SubType
Remote Access
Discovery Date
12/20/2002
Minimum DAT
4239 (12/23/2002)
Updated DAT
4673 (01/12/2006)
Minimum Engine
5.1.00
Description Added
02/19/2003
Description Modified
02/19/2003 1:05 AM (PT)

Tab Navigation

Characteristics

This detection is of application type for "potentially unwanted applications”, it is not a virus.
It includes two programs: kerbsniff and kerbcrack. The sniffer listens to the network and captures Windows 2000/XP logins. The cracker is used to find the passwords from the capture file, using a brute force attack or a dictionary attack.
It could be used maliciously.

Users who would like to check for the presence of this program on their system should run the command line scanner with the /PROGRAM switch. Please note that VirusScan 7 has an option, which enables users to detect this kind of program automatically.

Aliases

Aliases

    N/A