Managed XDR

vtdl_onsis0s1 — malware analysis report

File info

Filename
vtdl_onsis0s1
File type
PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
File size
1.4 MB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
eb667d1f2739cc036008449909c8823651fabfab
SHA256
99b1203e116ea5f080dca7d7a5367e346274f81aff2f59248c54f45e2ac509ac
MD5
1c5a4bf125465fabe6dbe6b7af5160d6

Signatures

Persistence

T1574 dropper_dll: Creates DLL, which is then loaded into the process

Privilege Escalation

T1574 dropper_dll: Creates DLL, which is then loaded into the process

Defense Evasion

T1574 dropper_dll: Creates DLL, which is then loaded into the process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity
message_box: Displays a message