Trojan.Win32.Autoit.fhj MVID-2022-0638 NULL DACL

Discussion in 'News Aggregator' started by Packet Storm, 8 Sep 2022.

  1. Packet Storm

    Packet Storm Guest

    Trojan.Win32.Autoit.fhj malware creates two processes "xservice.exe" and a child process "xps.exe". The process creates an IPC pipe with a NULL DACL allowing RW for the Everyone user group.

    Continue reading...
     

Share This Page

Loading...