Event ID - 1

Port No1
Service NameSockets des Troie
RFC Doc0
ProtocolUDP
DescriptionWorks on Windows 95 and 98, together with ICQ. Features as telnet and finger.
Reference LinkSockets des Troie Trojan
AttackIt autoloads the Registry:
HCU\Software\Microsoft\Windows\CurrentVersion\Run\ HCR\DirectSocketsDrv\ HCU\Software\Microsoft\Windows\CurrentVersion\RunLoad

It does the following :
Remote Access / ICQ trojan
Sockets des Troie is French for Trojan Sockets and was one of the very first Remote Access trojans being published.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.