SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  HackTool.A_29
HackTool.A_29 is a Hacktool. Hacktool describes tools that are used by a hacker (or unauthorized user) to attack, gain unwelcome access to or perform identification of your computer. Hack tools also generally attempt to gain information on or access hosts or bypass obvious security mechanisms inherent to the system it is installed on

      Process Related Changes
      It creates the following mutex(es):
      • MSCTF.Shared.MUTEX.AAD"
      • {FC2358EF-F090-9AEB-5235-8944965FE58F}"
      • CTF.TMD.MutexDefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • CTF.TimListCache.FMPDefaultS-1-5-21-1078081533-842925246-854245398-1003MUTEX.DefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • CTF.Compart.MutexDefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • __DDrawExclMode__"
      • DDrawWindowListMutex"
      • {EAAF42FD-749F-A25D-A0A6-9FD852F2A412}"
      • __DDrawCheckExclMode__"
      • CTF.Layouts.MutexDefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • DDrawDriverObjectListMutex"
      • CTF.Asm.MutexDefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • {91E99762-2D03-0D84-A916-AFCEFA4AB446}"
      • {B64DE8FD-795B-7057-E680-77F44A6854D4}"
      • CTF.LBES.MutexDefaultS-1-5-21-1078081533-842925246-854245398-1003"
      • {889115DB-DB1F-B55D-9D55-F738C62B4315}"

      It creates the following process(es):
      • C:\WINDOWS\Temp\4e0d32deb5b107421cf96bf93fca22d2.exe [ \c:\windows\temp\4e0d32deb5b107421cf96bf93fca22d2.exe ]


          Relevant Information