SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  MalAgent.H_16096
MalAgent.H_16096 is a Trojan. A Trojan is a program that pretends to have a valid use, but in fact modifies the user's computer in malicious ways. Trojans do not replicate or spread to other computers.

Mutexes created
  • Nothing to report


Directory level activity
    • Nothing to report


    File level activity
      • Nothing to report


      Registry level activity
        • Nothing to report


        Library level activity
          • Nothing to report


          Process API calls used
            • Nothing to report


            Registry API calls used
              • Nothing to report


              System API calls used
                • Nothing to report


                Filesystem API calls used
                  • Nothing to report

                  Network

                  UDP source >> destination
                  • 192.168.30.254 >> 192.168.30.8
                  • 192.168.30.8 >> 192.168.30.255


                  TCP source >> destination
                  • 192.168.30.8 >> 192.168.30.254



                  Domains:
                  • NA

                  DNS Request:
                  • NA

                  HTTP Request:
                  • NA

                  DLL related data
                  Number of DLL's imported = 25
                  • KERNEL32.dll
                  • USER32.dll
                  • GDI32.dll
                  • WINSPOOL.DRV
                  • ADVAPI32.dll
                  • SHELL32.dll
                  • ole32.dll
                  • OLEAUT32.dll
                  • SHLWAPI.dll
                  • COMCTL32.dll
                  • OPENGL32.dll
                  • urlmon.dll
                  • GLU32.dll
                  • CRYPT32.dll
                  • gdiplus.dll
                  • WS2_32.dll
                  • UxTheme.dll
                  • NETAPI32.dll
                  • AVICAP32.dll
                  • AVIFIL32.dll
                  • MSVFW32.dll
                  • RPCRT4.dll
                  • WINHTTP.dll
                  • POWRPROF.dll
                  • NTDSAPI.dll


                  Relevant Information