Managed XDR

vtdl_7v7drgjc — malware analysis report

File info

Filename
vtdl_7v7drgjc
File type
Zip archive data, at least v2.0 to extract
File size
230.6 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
74c549d39f1359770be55ddd13278a10f4e9220c
SHA256
59e5fbe9f9d9575ed803edb71ec1b9ebc83e5b88ef7a2c76f0ad9159054f96ac
MD5
55e29055549e5101892851aa15832846

Signatures

Execution

T1204 suspicious_lnk: LNK file with suspicious content
T1059.001 suspicious_powershell: Creates suspicious powershell process
T1059.001 suspicious_process: Spawns a suspicious process

Discovery

T1518 locates_browser: Attempts to identify where browsers are installed

Other

unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
has_pdb: This executable file has a PDB path
creates_suspended_process: Creates suspended process
pe_overlay: PE file contains overlay
yara_rules: Static rules