Managed XDR

8547bb53780dfed195a003637d71e4ae.virus — malware analysis report

File info

Filename
8547bb53780dfed195a003637d71e4ae.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
1fa6999dd923ff58213000a812fd3d2ec147ce86
SHA256
42fd249533894aed689e7e89f1f5401be00dd438d6ca09682cdbb0a2ed80778b
MD5
8547bb53780dfed195a003637d71e4ae

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity