Managed XDR

c-windows-ledx5.exe — malware analysis report

File info

Filename
c-windows-ledx5.exe
File type
PE32+ executable (GUI) x86-64, for MS Windows
File size
484.7 KB
First seen
Last seen

Environment

w10/x64 en

Hashes

SHA1
eb92796fa879b462618c30d92cb9122a600a7edc
SHA256
789a2eb1bacac52ee2bdcf92ed96156ca9e20318a89691d20843627e5ebe8ea7
MD5
f98764011b1065a8399194c2a801b8f8

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
require_administrator: Requests administrator privileges
test_check_service: Starts services