Event ID - 1024

Port No1024
Service NameJade
RFC Doc0
ProtocolTCP
DescriptionWorks on Windows. Jade was written in C builder and is using Delphi libraries.
Reference LinkJade Trojan
AttackIt autoloads the Registry:
HLM\Software\Microsoft\Windows\CurrentVersion\Run\ HLM\Software\Microsoft\Windows\CurrentVersion\RunServices\

It does the following :
Remote Access
FTP trojan Also adds itself to the Start Menu to ensure autostart at Windows boot. The code has been packed with Neolite compressor.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.