Managed XDR

vtdl_3seib4eh — malware analysis report

File info

Filename
vtdl_3seib4eh
File type
PE32 executable (GUI) Intel 80386, for MS Windows
File size
9.7 MB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
995f63018eefe0b455244d9e629d09d5acb78b28
SHA256
3beaa8a28d662a6f51b430b418290eb4245bb85bb5ad853feb0078998b446892
MD5
d5617752d1710750a0c2ed0b09baa119

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity
has_pdb: This executable file has a PDB path