Event ID - 2772

Port No2772
Service NameBKDR_G2
RFC Doc0
ProtocolTCP
DescriptionThis backdoor hacking tool enables a hacker access to an infected computer from a remote location. It compromises network security.
Reference LinkBKDR_G2
AttackDetails:

Upon execution, this server side of a backdoor hacking tool, registers itself as a software in an infected system. It drops a DSETO.EXE file in the Windows directory of the infected user's drive C:\. Upon execution of this dropped file, the hacker can perform the following on the infected computer:
Get username and computer name
Swap mouse buttons
Track pop up menus
Control mouse cursors
Delete menus and icons
Execute printer
Manipulate desktop setting
Manipulate sounds

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.