Skip to main content
Skip to main content
Microsoft Security Intelligence
500 entries found. Displaying page 1 of 25.
Updated on Nov 23, 2023
Alert level: high
Updated on Nov 23, 2023
Alert level: high
Updated on Apr 11, 2011
HackTool:Win32/IPScan is a utility that is used to scan a specified IP block to identify computers that have a weak passwords for their corresponding Admin$ and IPC$ share.
Alert level: high
Updated on May 20, 2011

HackTool:Win32/Ntillusion is the detection for a user-mode rootkit. It uses SetWindowsHookEx to inject itself into each running process on an infected computer. It then hooks the Import Address Table entries for several functions in order to redirect them to functions implemented by the rootkit.

Alert level: high
Updated on Apr 11, 2024
Alert level: high
Updated on Jan 06, 2024
Alert level: high
Updated on Nov 23, 2023
Alert level: high
Updated on Feb 27, 2017

Microsoft Defender Antivirus detects and removes this threat.

Hacktools can be used to patch or "crack" some software so it will run without a valid license or genuine product key.

Running hacktools is not recommended because they can be associated with malware or potentially unwanted software.

We often see malware on PCs where hacktools are detected. You can read more about hacktools in Volume 13 of the Security Intelligence Report.

Alert level: high
Updated on May 24, 2011
HackTool:Win32/RemoteSearch.A is a command line tool that can be used to harvest files and file information from the local system or remote file shares.
Alert level: high
Updated on Nov 22, 2012

HackTool:Win32/WpePro is a tool called Winsock Packet Editor Pro or "WPE PRO" that listens, logs, filters, and modifies Winsock packets.

The tool may be used to hack online communications and online games by mimicking traffic from the communication or game.

Alert level: high
Updated on Jan 15, 2024
Alert level: high
Updated on Apr 11, 2011
HackTool:Win32/Ntscan.A is a utility that is used to scan a specified IP block to identify computers that have a weak passwords for their corresponding Admin$ and IPC$ share.
Alert level: high
Updated on Mar 17, 2024
Alert level: high
Updated on Apr 11, 2011
HackTool:Win32/Fgdump is a tool used to write files to a remote computer, in a specified share or directory.
Alert level: high
Updated on Apr 11, 2011
HackTool:Win32/Passview is the detection of a tool named "Protected Storage PassView". The tool is used to display the passwords which may be stored in Windows Protected Storage (Pstore).
Alert level: high
Updated on Jan 29, 2015

Windows Defender detects and removes this threat.

Hacktools can be used to patch or "crack" some software so it will run without a valid license or genuine product key.

We recommend you don't run hacktools because they can be associated with malware or potentially unwanted software.

We often see malware on PCs where hacktools are detected. You can read more about hacktools in Volume 13 of the Security Intelligence Report.

Alert level: high
Updated on Aug 03, 2018

Microsoft Defender Antivirus detects and removes this threat.

This is the detection for malicious DLL components of malware typically used in targeted attacks. These threats employ the reflective DLL loading technique to run specific commands on a compromised system.

When loaded in memory, these DLL components \can execute their payload. 

Alert level: high
Updated on Aug 24, 2015

Windows Defender detects and removes this threat.

Hacktools can be used to patch or "crack" some software so it will run without a valid license or genuine product key. They can also be associated with malware or potentially unwanted software.

We often see malware on PCs where hacktools are detected. You can read more about hacktools in Volume 13 of the Security Intelligence Report.

 

Alert level: high
Updated on Nov 08, 2011

HackTool:Win32/Sqlinject.B is the detection for hacking tools that exploit software databases using SQL injection. These tools may be used to exploit vulnerable websites or steal information stored in databases.

Alert level: high
Updated on Dec 06, 2023
Alert level: high