Event ID - 30029

Port No30029
Service NameAol Trojan
RFC Doc0
ProtocolTCP
DescriptionAol Trojan 1.1 is kind of outdated due to the fact that AOL has upgraded. Because of this some of the AOL features may not work. Also this trojan was programmed in Visual Basic so it's hard to get infected with it.
Reference LinkAol Trojan
AttackActivities :
Click start button ,
Enable/Disable Ctrl-Alt-Del ,
Enable/Disable start button ,
File manager ,
Hide/Show task bar ,
Locate member on AOL 4.0 ,
Run IdentD server (Connect to IRC servers through server) ,
Monitor AOL IM's ,
Multimedia features,
Open/close Cd-rom,
Protect VB files from being decompiled ,
Read or delete AOL 4.0 mail ,
Restart windows, reboot computer, suspend computer, shutdown computer ,
Send an IM,
Send email ,
Send message .

Removal :
1. Remove the dat92003 key in the registry located at HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run
Which can be done with regedit or any other registry editing program
Reboot the computer or close dat92003.exe
Delete the trojan file dat92003.exe in the windows directory.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.