Managed XDR
Group-IB MDP Report
Filename: vtdl_cke7e8xu
File Type: RFC 822 mail, ASCII text, with CRLF line terminators
File Size: 77.3 KB
SHA1: 844a9b41838afd4e6d98b8b8382f649927846673 SHA256: 16126891aef851e82fb96b51950771b8ea627b4e2282640db225f8849cc42d31 MD5: 283dfba3f24214eadb943491eb470cce
Signatures
Defense Evasion
T1497.002 async_mouse: Watches for mouse clicks using GetAsyncKeyState to detect human activity
Discovery
T1497.002 async_mouse: Watches for mouse clicks using GetAsyncKeyState to detect human activity
Other
yara_rules: Static rules
suspicious_pdf: PDF file with suspicious content
pdf_page: Contains only one page
pdf_compressed_stream: Contains an object with compressed stream
office_links: Office file contains external links
Managed XDR