Event ID - 3456

Port No3456
Service NameDoly Trojan
RFC Doc0
ProtocolTCP
DescriptionThe Doly Trojan 2.0 has been released as a beta and appears to be the last Doly Trojan. This version came with a brand new client and a server that was reduced to only 104 kilobytes. Doly Trojan 2.0 does not infect computers. The programmers suggested merging it with other files. Also the screen capture feature needs an extra DLL file to work, which needs to uploaded by the person using the server. The lack of infection capabilities and non-working features mean version 1.70 SE is probably encountered more often then this version.
Reference LinkDoly Trojan Trojan
AttackIt does the following :
Change computer name
Change owner name
Change resolution to 640/480
Change the title color on open
windows to a random color
Change volume to maximum or minimum
Close all windows
Close server
Disable double click
Disconnect server from internet
Display fatal error plus customizable message
Display FBI screen
Get ICQ UIN
Get passwords
Get user info
Hide/show mouse
Hide/show task bar
IRC notify
Key logger on/off
Move mouse
Open/close cd-rom
Open FTP server
Remove windows background Run program (visible to user or hidden)
Send to URL
Set all window names to another name
Set systems color
Sleep
Show/stop error screen
Shutdown windows
Swap/unswap mouse buttons (Left button becomes right)
View running applications

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.