Managed XDR

d9af0c8e221758a9fa8c2ce71c743357.virus — malware analysis report

File info

Filename
d9af0c8e221758a9fa8c2ce71c743357.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
42d96a0e74b4c6a61362a3b14ed9085cacf37ea3
SHA256
da2f88443ac5c75b3aba7374f3cbd9fe3c7c84e4bc04d0a74bc42e71f50fe1e9
MD5
d9af0c8e221758a9fa8c2ce71c743357

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity