Managed XDR
Group-IB MDP Report
File info
Filename: vtdl_3u81r8g3
File Type: PE32 executable (GUI) Intel 80386, for MS Windows
File Size: 949.5 KB
Env info
win7/x86 en
Hashes
SHA1: 6bc510b50af60bffa33c112074f2c0b95186bbab
SHA256: ddd49cf549451a843e3d665f508c84c9a80cbf32dabe67a79b1484c0a3b60521
MD5: 009609eaff7544ada0ab8ec4d4991171
Signatures
Privilege Escalation
T1134 opens_process_token: Opens the access token associated with a process
Defense Evasion
T1134 opens_process_token: Opens the access token associated with a process
Other
yara_rules: Static rules
no_graphical_activity: No graphic activity
has_pdb: This executable file has a PDB path
Managed XDR