Event ID - 44575

Port No44575
Service NameEXPLOIT
RFC Doc0
ProtocolTCP
DescriptionThis memory-resident backdoor program is designed to access and control a target system. It has a client and server component to carry out its malicious capabilities.
The server component is installed on the target system while the client is with the remote malicious user. The server attempts to open a port and thereafter wait for client connection. Upon establishing port connection, the client component may perform the following actions, which effectively compromises the target system's security:
send a fake error message or alerts to the server
get files
shut down and restart the system or restart it in DOS mode
get the target username and servername open a URL where the attacker can specify which Web site to direct the browser
play a sound file and open a picture file
get the target's system time
make the desktop black in order to make the screen look like it has been turned off
hide/show the Taskbar, Start button, Clock and System tray
play with the mouse cursor
turn on/off keyboard keys
open and close the CDROM tray
This malicious programs runs on Windows 9x and ME systems.
Reference LinkEXPLOIT
AttackSolution:

This procedure terminates the running malware process from memory. You will need the name(s) of the file(s) detected earlier.
Open Windows Task Manager.
On Windows 9x/ME systems, press
CTRL+ALT+DELETE
On Windows NT/2000/XP systems, press
CTRL+SHIFT+ESC, and click the Processes tab.
In the list of running programs*, locate the malware file or files detected earlier.
Select one of the detected files, then press either the End Task or the End Process button, depending on the version of Windows on your system.
Do the same for all detected malware files in the list of running processes.
To check if the malware process has been terminated, close Task Manager, and then open it again.
Close Task Manager.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.