Event ID - 2929

Port No2929
Service Namepanja-webadmin
RFC Doc0
ProtocolTCP
Descriptionpanja-webadmin
Reference LinkMore Information
AttackName:Konik

Backdoor Konik 0.6b is a Trojan that opens up a backdoor program. Once installed on a system, it permits unauthorized users to remotely perform a variety of operations, such as changing the registry, executing commands, starting services, listing files, and uploading or downloading files. Konik typically runs from the server file "C:\WINDOWS\SYSTEM\MODSYS.EXE" over port 23321 via TCP

Through the Konik client, an attacker could perform malicious actions. These include, but are not limited to, the following:

1. Access the registry
2. Execute commands
3. Start services
4. Upload, download, and list files

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.