Event ID - 1016

Port No1016
Service NameDoly Trojan
RFC Doc0
ProtocolTCP
DescriptionDoly Trojan 1.60 still has a large install feature though it is somewhat downsized at only 1.21 megabytes. This version fixed many bugs in version 1.50. It also added ICQ notification, which makes it very easy to find servers. Additionally, this version can be password protected, although if there is no connection made within 4 days then the password is removed.
Reference LinkDoly Trojan Trojan
AttackIt autoloads the Registry:
Registry and start up group

It does the following :
Change computer name
Change owner name
Change resolution to 640/480
Change the title color on open
windows to a random color
Change volume to maximum or minimum
Close all windows
Close server
Disable double click
Disconnect server from internet
Display fatal error plus customizable message
Display FBI screen
Get ICQ UIN
Get passwords
Get user info
Hide/show mouse
Hide/show task bar
IRC notify
Key logger on/off
Move mouse
Open/close cd-rom
Open FTP server
Remove windows background Run program (visible to user or hidden)
Send to URL
Set all window names to another name
Set systems color
Sleep
Show/stop error screen
Shutdown windows
Swap/unswap mouse buttons (Left button becomes right)
View running applications
View, clear or change clipboard text

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.