Event ID - 57163

Port No57163
Service NameBlackRat
RFC Doc0
ProtocolTCP
DescriptionBlackRat Trojan is a malicious parasite, which usually infects the system via IRC (Internet Relay Chat) clients. This can often happen right after a careless user accepts unknown DCC file transfer proposal and the main infected file is successfully downloaded. If this happens, the anonymous hacker gets a remote access over ICR client and an ability of stealing user's passwords, confidential messages, logins, etc.
Reference LinkMore Information
AttackName:Black Rat

BlackRat Trojan properties:
. Allows remote user connection
. Sends out logs by FTP or email
. Logs keystrokes
. Connects itself to the internet
. Hides from the user
. Stays resident in background

BlackRat Trojan manual removal:
1. Kill processes:
x32afx.exe,
photo.exe

2. Delete files:
x32afx.exe,
photo.exe

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.