Managed XDR

vtdl_l1f80jx9 — malware analysis report

File info

Filename
vtdl_l1f80jx9
File type
PE32+ executable (GUI) x86-64 (stripped to external PDB), for MS Windows
File size
649 KB
First seen
Last seen

Environment

win7/x64 en

Hashes

SHA1
d37f982cb57e795d918d9d17b89e15e70d6a9dd1
SHA256
df8af50716b0337d18d4eb8455be6a291857576fd492c686e2da85626d4b2e60
MD5
abb867e6533e2c7742514be4c8ec1882

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity