Managed XDR

vtdl_cqyi1sou — malware analysis report

File info

Filename
vtdl_cqyi1sou
File type
MS Windows shortcut, Item id list present, ctime=Wed Sep 25 05:29:53 2024, mtime=Wed Sep 25 05:29:53 2024, atime=Wed Sep 25 05:29:53 2024, length=0, window=hide
File size
1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
004707072de3112d5e1a03b00c11be38460fa3c6
SHA256
50b11b6be80dc8c9ca952d4dee34303cd2ccaaa02506e771ebbe6a0091066d45
MD5
59d6a21ecd7f08006791641ceb88ea3e

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process