Managed XDR

vtdl_7kzsmjce — malware analysis report

File info

Filename
vtdl_7kzsmjce
File type
MS Windows shortcut, Has Description string, Has command line arguments, Icon number=0, Archive, ctime=Fri May 5 12:21:55 2023, mtime=Tue Mar 5 03:17:59 2024, atime=Fri May 5 12:21:55 2023, length=236544, window=hidenormalshowminimized
File size
2.5 KB
First seen
Last seen

Environment

win7/x64 en

Hashes

SHA1
4f80dfd56eda87a9054368ee5e3af78df8e45e77
SHA256
d35b699757684916a73d9341721dab87f33151358e85f599ad25a99a618a3b4a
MD5
6b34b3cd1fb12a554be0eee98982e8c5

Signatures

Execution

T1059.001 suspicious_powershell: Creates suspicious powershell process
T1059.001 suspicious_process: Spawns a suspicious process

Defense Evasion

T1027.002 unnamed_memory_regions: Code was executed in unnamed regions
T1027.004 compiles_code: Compiles C# code

Other

creates_exe: Creates executable files in the file system
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process
yara_rules: Static rules