Managed XDR

vtdl_un2rxkzw — malware analysis report

File info

Filename
vtdl_un2rxkzw
File type
MS Windows shortcut, Item id list present, ctime=Wed Sep 18 08:30:00 2024, mtime=Wed Sep 18 08:30:00 2024, atime=Wed Sep 18 08:30:00 2024, length=0, window=hide
File size
1.1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
41b0bd96bfd227450568a2f5ddecd91990853220
SHA256
cbf88657dce32af3f7a39e4a8ac14ecf19dd6c25d0c742af4c8365f091b9710c
MD5
af64ce5f725dc0cd6eb5cbcc1d49e964

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process