Event ID - 65421

Port No65421
Service NameJade
RFC Doc0
ProtocolTCP
DescriptionWorks on Windows. Jade was written in C builder and is using Delphi libraries.
Reference LinkJade Trojan
AttackIt autoloads the Registry:
HLM\Software\Microsoft\Windows\CurrentVersion\Run\ HLM\Software\Microsoft\Windows\CurrentVersion\RunServices\

It does the following :
Remote Access / FTP trojan Also adds itself to the Start Menu to ensure autostart at Windows boot. The code has been packed with Neolite compressor.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.