Event ID - 34324

Port No34324
Service NameBig Gluck
RFC Doc0
ProtocolTCP
DescriptionWorks on Windows 95, 98 and NT. Uses Telnet as the client. It´s looks very much as Girl Friend.
Reference LinkBig_Gluck
AttackRegisters:
HLM\Software\Microsoft\Windows\CurrentVersion\Run\,
or
HLM\Software\Microsoft\Windows\CurrentVersion\RunServices

Files:
Biggluk.zip - 108,584 bytes Bg10.exe - 100,352 bytes Tnsrv.exe - 127,488 bytes

Actions:
Steals passwords / Remote Access
Steals all cached passwords.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.