Managed XDR

3d835d18aa9e02b076aa7c5f1a306287.virus — malware analysis report

File info

Filename
3d835d18aa9e02b076aa7c5f1a306287.virus
File type
PE32 executable (GUI) Intel 80386, for MS Windows
File size
742 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
d0558bffa496f5465cccecd265a73906a44eaa0a
SHA256
e9fe3ca47c5beffd6e256d02bbd5dc486a5b9761b86c85498d71b960da5d194d
MD5
3d835d18aa9e02b076aa7c5f1a306287

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity
message_box: Displays a message
pe_overlay: PE file contains overlay