Managed XDR

virusshare_93375f8fe5b9f5e2559e7796bb17b23a — malware analysis report

File info

Filename
virusshare_93375f8fe5b9f5e2559e7796bb17b23a
File type
PE32 executable (GUI) Intel 80386, for MS Windows
File size
467.3 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
6f73433f778c6bfee5a9c4ceb813cc6698d39f01
SHA256
955b4d62d3aebc6669cd030ca07d31a2b40a2cfbcd9eaa5577b36b47d77d994e
MD5
93375f8fe5b9f5e2559e7796bb17b23a

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
process_crashed: One of the processes has failed
no_graphical_activity: No graphic activity
pe_overlay: PE file contains overlay