Skip to content

Instantly share code, notes, and snippets.

@Te-k
Last active April 16, 2017 03:33
Show Gist options
  • Save Te-k/1cbbcc2e3abf109593d3552ad06e25a6 to your computer and use it in GitHub Desktop.
Save Te-k/1cbbcc2e3abf109593d3552ad06e25a6 to your computer and use it in GitHub Desktop.
ShadowBrokers attack tool process names
clocksvc.exe|*** PATROLWAGON ***|SAFE
help16.exe|*** SOMETHING YOU UPLOADED??? ***|SAFE
iexplorer.exe|*** UNITEDRAKE INSTALLER *** or RapidBlaster Virus|SAFE
msalgmon.exe|*** VALIDATOR ***|SAFE
mscache32.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
mscfg32.exe|*** UNITEDRAKE ***|SAFE
msdnsche.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
msmmc32.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
msntfs.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
msregstr.exe|*** VALIDATOR ***|SAFE
msscd16.sys|*** VALIDATOR ***|SAFE
mssvcmn.exe|*** VALIDATOR ***|SAFE
mswdssvc.exe|*** VALIDATOR ***|SAFE
nddaegnt.exe|*** MOSSFERN ***|SAFE
spcss32.exe|*** EXPANDINGPULLY ***|SAFE
TASKMGR.EXE|+++ Windows Task Manager +++|ADMIN_TOOL
update.exe|*** DMW ***|SAFE
vmm.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
ncmsvc.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
ncrsvc.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
ncssvc.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
dinput.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
msdtc32.exe|*** DMW ***|SAFE
drsd.exe|*** FRIENDLY TOOL - Seek Help ***|SAFE
7i24IISMonitor.exe|IIS Monitor|NONE
msacm32.exe|*** EXPANDINGPULLY ***|SAFE
msdtctm.exe|*** EXPANDINGPULLY ***|SAFE
msimg32.exe|*** EXPANDINGPULLY ***|SAFE
mstscax.exe|*** EXPANDINGPULLY ***|SAFE
w32topl.exe|*** EXPANDINGPULLY ***|SAFE
igfxcpl.exe|*** EXPANDINGPULLY ***|SAFE
msgki.exe|*** GROK ***|SAFE
msgkd.exe|*** GROK ***|SAFE
msgku.exe|*** GROK ***|SAFE
alg32.exe|*** DISABLEVALOR ***|SAFE
msdirectx.exe|*** UNITEDRAKE ***|SAFE
winproc.exe|*** FOGGYBOTTOM ***|SAFE
msdcsvc.exe|*** MORBIDANGEL ***|SAFE
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment