Managed XDR

16894c3fd07c65b0b5397ed20a9bc167.virus — malware analysis report

File info

Filename
16894c3fd07c65b0b5397ed20a9bc167.virus
File type
MS Windows shortcut, Item id list present, ctime=Fri Dec 8 10:48:59 2023, mtime=Fri Dec 8 10:48:59 2023, atime=Fri Dec 8 10:48:59 2023, length=0, window=hide
File size
656 Bytes
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
35c01a2bf921b1cd57d180326bed71f137e58b4e
SHA256
d9ebe5bb52fd6ccac2a42cd8acc8ffdb8f1aa1f3710fb437c89e9c29aa3a58d8
MD5
16894c3fd07c65b0b5397ed20a9bc167

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process