Event ID - 56565

Port No56565
Service NameOsiris
RFC Doc0
ProtocolTCP
DescriptionBackdoor Osiris v2.0 is a Trojan that opens up a backdoor program. Once installed on a system, it permits unauthorized users to remotely perform a variety of operations, such as changing the registry, executing commands, starting services, listing files, and uploading or downloading files. Osiris typically runs over ports 56565, 34343, and 45454 via TCP.
Reference LinkMore Information
AttackName:Osiris

How To Remove:
1. Kill the following processes
osiris.exe,
server.exe,
server[mÚchant].exe,
server4test.exe,
serveur[gentil].exe,
serveur[mechant].exe

2. Remove the following files
osiris.exe,
osirisboutons.ocx,
readme.txt,
server.exe,
server4test.exe,
server[mÚchant].exe,
serveur[gentil].exe,
serveur[mechant].exe.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.