Managed XDR

vtdl_9wugpzp7 — malware analysis report

File info

Filename
vtdl_9wugpzp7
File type
MS Windows shortcut, Item id list present, ctime=Tue Jan 16 23:00:46 2007, mtime=Tue Jan 16 23:00:46 2007, atime=Tue Jan 16 23:00:46 2007, length=0, window=hide
File size
1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
a03c734edb571cf42423afa7396669543e97ff71
SHA256
a63ac0651cdeb59711a4acd91e88ffb2d40529284e9b3acd749e13c240ed7bed
MD5
9f35b9ec16022ff5ac546b421cb084de

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process