Managed XDR

9b2a9d2d3db782a88b2db3...f9cd394327d1d41414.lnk — malware analysis report

File info

Filename
9b2a9d2d3db782a88b2db346864bb53ab0e08b02463555f9cd394327d1d41414.lnk
File type
Windows shortcut file
File size
1.4 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
f123131665a7ac7f6334eef6ba31b983d725043f
SHA256
2559dc9326020b0049ffeafed81745c41cf2e7a1df32f9cdeae5bc974365f4d2
MD5
dda5ab73ece985f016553dbb6e48b659

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process