Managed XDR

mssense.exe — malware analysis report

File info

Filename
mssense.exe
File type
PE32+ executable (console) x86-64, for MS Windows
File size
5.6 MB
First seen
Last seen

Environment

w10/x64 en

Hashes

SHA1
714f4d1978dd5baa90e738e35c9aee2b817b94aa
SHA256
0e44c4c574eeeb713ce8cd35929d7085a6fe818186ef4420a00f5b10d9b8f99d
MD5
6ceb78fd916c9ecfbd58958b4b6712b3

Signatures

Defense Evasion

T1027.002 packer_vmprotect: Executable file is likely compressed using VMProtect
T1027.002 packer_entropy: Probably contains compressed or encrypted data

Other

yara_rules: Static rules
static_pe_anomaly: The PE file structure contains anomalies
no_graphical_activity: No graphic activity
has_pdb: This executable file has a PDB path
test_check_service: Starts services