Managed XDR

lime-crypter.exe — malware analysis report

File info

Filename
lime-crypter.exe
File type
PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size
165.5 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
6d8af7b611108eb9437d0a06ea3edd17a2647ea1
SHA256
60269deebe32f00e1d35401a17771d8b845db09bd26024f526cea7b5be6b6ce1
MD5
d33d205dde87ccd4264d132382dc5754

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
get_policy_info: Retrieves information about a Policy object