We're gradually updating threat actor names in our reports to align with the new weather-themed taxonomy. Learn about Microsoft threat actor names
HackTool:Win32/PTHToolkit
Detected by Microsoft Defender Antivirus
Aliases: No associated aliases
Summary
HackTool:Win32/PTHToolkit is a tool used within a command-line interface to alter information about the current user's logged on session while communicating over a Windows network. The tool is also known as the "Pass-The-Hash" Toolkit.
Programs designated as Hacktool are generally installed intentionally by a computer user. Deleting the installed components will remove it. Alternatively, to detect and remove this software, run a full-system scan with an up-to-date antivirus product such as the following:
For more information on antivirus software, see http://www.microsoft.com/windows/antivirus-partners/.