Managed XDR

vtdl_1751711090_ydcqzkac — malware analysis report

File info

Filename
vtdl_1751711090_ydcqzkac
File type
MS Windows shortcut, Item id list present, ctime=Tue Jan 8 04:01:11 2013, mtime=Tue Jan 8 04:01:11 2013, atime=Tue Jan 8 04:01:11 2013, length=0, window=hide
File size
1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
bc368a0390119e5e3f827cfd833e30c72868c543
SHA256
52cfa0ee2739567c5423bd1874f028ba12d5ef2f49752d19a35f0278a2abc335
MD5
b30f5796a0ea774f56d591a9efed24d6

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process