Managed XDR

vtdl_1731981323_oykh3fx7 — malware analysis report

File info

Filename
vtdl_1731981323_oykh3fx7
File type
MS Windows shortcut, Item id list present, ctime=Sun Oct 19 01:58:34 2014, mtime=Sun Oct 19 01:58:34 2014, atime=Sun Oct 19 01:58:34 2014, length=0, window=hide
File size
1.1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
1d9cbf0635d75156c7ced8d6537bca7e19d42092
SHA256
acdcfc37ae674cc5eb1cb9ee21b54b0728a106305b8f61c16d4d6bbdcff146f6
MD5
f8d88f3ac032ca1083e63b6fb1cfe65a

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process