SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  AA5F.A_1
AA5F.A_1 is a Virus. Virus is a type of malware that, when executed, replicates by inserting copies of itself (possibly modified) into other computer programs, data files, or the boot sector of the hard drive

Mutexes created
  • Nothing to report


Directory level activity
    • Nothing to report


    File level activity
      • Nothing to report


      Registry level activity
        • Nothing to report


        Library level activity
          • Nothing to report


          Process API calls used
            • Nothing to report


            Registry API calls used
              • Nothing to report


              System API calls used
                • Nothing to report


                Filesystem API calls used
                  • Nothing to report

                  Network

                  UDP source >> destination
                  • 192.168.30.254 >> 192.168.30.6
                  • 192.168.30.6 >> 192.168.30.254
                  • 192.168.30.6 >> 192.168.30.255
                  • 192.168.30.6 >> 8.8.8.8


                  TCP source >> destination
                  • 192.168.30.6 >> 162.159.129.233
                  • 192.168.30.6 >> 192.168.30.254



                  Domains:
                  • discord.com with IP - 162.159.128.233
                  • cdn.discordapp.com with IP - 162.159.133.233

                  DNS Request:
                  • discord.com
                  • cdn.discordapp.com

                  HTTP Request:
                  • NA

                  DLL related data
                  Number of DLL's imported = 17
                  • oleaut32.dll
                  • advapi32.dll
                  • user32.dll
                  • kernel32.dll
                  • kernel32.dll
                  • user32.dll
                  • msimg32.dll
                  • gdi32.dll
                  • version.dll
                  • kernel32.dll
                  • advapi32.dll
                  • kernel32.dll
                  • oleaut32.dll
                  • comctl32.dll
                  • winspool.drv
                  • comdlg32.dll
                  • UrL


                  Relevant Information