Managed XDR

vtdl_1750697954_w13bahl_ — malware analysis report

File info

Filename
vtdl_1750697954_w13bahl_
File type
PE32 executable (console) Intel 80386, for MS Windows
File size
2.5 MB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
a75ef829e29e2ed0bce270e6f9f8302e5c1586c2
SHA256
ef06a756d61e7cb63f40c5a88f423a54aa5983e6cbd4856de5804de5e4be9849
MD5
27bb37d8670062d1405ffccc7fe5fff9

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity