Event ID - 65500

Port No65500
Service NameWindows Mite
RFC Doc0
ProtocolTCP
DescriptionWindows Mite 1.0 is a trojan from 1999. This trojan does have destructive features, such as deleting windows and the registry. Windows Mite does replace the normal scanregw.exe file
Reference LinkWindows Mite
AttackAutoloads: Registry: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run Key: ScanRegistry

Features:
Crash system
Delete Windows
Disable/enable alt-ctrl-del
File manager
Get ICQ UIN
Get passwords
Hide/show task bar
Log off, Reboot or shutdown Windows
Open/close CD-Rom
Remove registry files
Send message
Send to URL
Swap mouse buttons

Fix:
Remove the Scan Registry key in the registry located at HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run Which can be done with regedit or any other registry editing program.
Reboot the computer or close scanregw.exe.
Delete the trojan file scanregw.exe in the windows directory.

Catch threats immediately

We work side-by-side with you to rapidly detect cyberthreats
and thwart attacks before they cause damage.

See what we caught

Did this information help you to resolve the problem?

Yes: My problem was resolved.
No: The information was not helpful / Partially helpful.