Event ID - 2983

Port No2983
Service NameNetplan
RFC Doc0
ProtocolTCP
DescriptionNetwork server for `plan' Plan is a schedule planner based on X/Motif. Netplan adds to plan multiuser capability using an IP server.
WARNING: the best level of authentication offered by netplan in this version is identd. That's quite weak, so watch the manpage and tune the config carefully
Reference LinkMore Information
AttackName:Breach 4.5

Backdoor Breach 4.5 is a Trojan that opens up a backdoor program that, once installed on a system, permits unauthorized users to remotely log keystrokes, edit files, run applications, change ports, etc. Breach 4.5 uses ports 2983 and 11111 for FTP access.

There are several Backdoor detection programs on the market that are said to be able to scan for and detect a Backdoor Breach 4.5 server on your system. Some of the better known AntiVirus vendors have included detection strings in their virus definitions.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.