Managed XDR

vtdl_fpp_91ck — malware analysis report

File info

Filename
vtdl_fpp_91ck
File type
MS Windows shortcut, Item id list present, ctime=Fri Sep 20 01:43:54 2024, mtime=Fri Sep 20 01:43:54 2024, atime=Fri Sep 20 01:43:54 2024, length=0, window=hide
File size
1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
255db4e17cb3df8697aa2328966f5b78ac894200
SHA256
f94644544060e301530bde0832db2b634f51e07436453b068ae0351fd8fc97b6
MD5
9b9c53a2705ad984ab0f8f69406117d0

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process