Event ID - 1777

Port No1777
Service NameScarab
RFC Doc0
ProtocolTCP
DescriptionA Trojan horse is a malicious program hidden in normally useful and harmless software. Trojan horse programs cannot replicate themselves, whereas viruses and worms can replicate themselves. A backdoor is a method that attackers use to gain unauthorized access to a system. A Remote Administration Tool (RAT) is a kind of Trojan that enables remote attackers to gain full control over an infected machine
Reference LinkMore Information
AttackName:
Scarab

Scarab 1.2c is a Visual Basic 4 trojan. This trojan has a few of features we have never seen before like changing the server title or making "shit" fly around the screen.

How To Remove
1. Open the win.ini(Usually c:\windows\win.ini) and remove the key: run=podwin32.exe under [Windows], this can be done with any text editing program.
2. Reboot the computer or close podwin32.exe.
3. Delete the trojan files podwin32.exe and win32exe.exe in the windows directory.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.