Managed XDR

vtdl_1731910052_j6q6zr38 — malware analysis report

File info

Filename
vtdl_1731910052_j6q6zr38
File type
PE32+ executable (console) x86-64, for MS Windows
File size
362.4 KB
First seen
Last seen

Environment

win7/x64 en

Hashes

SHA1
e1be9aee0b2555606f54c5db68e75efaf28b13cd
SHA256
0f54e34eb860bbc6f8bee7fda57522463322eb8e8c49a7321e0012b55bb1d10a
MD5
84031c62be54da77c804af6ceeb5da88

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1036.001 invalid_authenticode: Digital signature of the executable file has failed the verification
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
pe_overlay: PE file contains overlay