Managed XDR

0856ca01b55f5b572634124c3061f4b7.virus — malware analysis report

File info

Filename
0856ca01b55f5b572634124c3061f4b7.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
426bade5f6f5cbb78aaaa27cd6855fe9cb01ca32
SHA256
732d758c0c02af34d44db03633fb29df33c65715d646d5a444735d7e0af39f5d
MD5
0856ca01b55f5b572634124c3061f4b7

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity