Managed XDR

d1ae533eae9ce55ac464c8...0227e4067c3eb1b206.lnk — malware analysis report

File info

Filename
d1ae533eae9ce55ac464c80f0f2a51c22bbeff5583f8470227e4067c3eb1b206.lnk
File type
Windows shortcut file
File size
4.1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
8117a883f3db8282928246e8085f93ca847272c6
SHA256
9bc6b29b7c0575e63ff70c6851c37b87362374aa27af86c8df680278e71d7cde
MD5
c0254a3ca2dab8cec9e1798e44f6621c

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process