Event ID - 1255

Port No1255
Service NameScarab
RFC Doc0
ProtocolTCP
DescriptionScarab 1.2c is a Visual Basic 4 trojan. This trojan has a few of features we have never seen before like changing the server title or making "shit" fly around the screen.
Reference LinkMore Information
AttackName:Scarab

Scarab 1.2c is a Visual Basic 4 trojan. This trojan has a few of features we have never seen before like changing the server title or making "shit" fly around the screen.

How To Remove:
1. Open the win.ini(Usually c:\windows\win.ini) and remove the key: run=podwin32.exe under [Windows], this can be done with any text editing program.
2. Reboot the computer or close podwin32.exe.
3. Delete the trojan files podwin32.exe and win32exe.exe in the windows directory.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.