Event ID - 1097

Port No1097
Service NameRAT
RFC Doc0
ProtocolTCP
DescriptionRemote Administration Tool - RAT

Sun Cluster Manager
Reference LinkMore Information
AttackName:
RAT (5.3.0)

Rat 5.3.0 is a Visual Basic trojan. This trojan has many features specific to AOL. These AOL features probably do not work any more because the trojan was created in 1999.

Removal:
1. Remove the Explorer key in the registry located at HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run Which can be done with regedit or any other registry editing program.
2. Reboot the computer or close MSGSRV16.EXE.
3. Delete the trojan file MSGSRV16.EXE in the windows system directory.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.