Event ID - 1243

Port No1243
Service NameBackDoor-G
RFC Doc0
ProtocolTCP
DescriptionWorks on Windows.
Reference LinkBackDoor-G Trojan
AttackIt autoloads the Registry:
HLM\Software\Microsoft\Windows\CurrentVersion\RunServices\

File :
Backdoor-G.ldr - Backdoor-G.srv - Backdoor-G.dll - Backdoor-G.cfg - Backdoor-G.cli - Lmdrk_33.dll - Nodll.exe - Window.exe - Watching.dll - Tinurak.exe - Data2.exe -

It does the following :
Remote Access
Renamed and modified versions of Sub Serven.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.