Managed XDR

vtdl_exp1e9x9 — malware analysis report

File info

Filename
vtdl_exp1e9x9
File type
MS Windows shortcut, Item id list present, ctime=Mon Sep 23 15:31:05 2024, mtime=Mon Sep 23 15:31:05 2024, atime=Mon Sep 23 15:31:05 2024, length=0, window=hide
File size
1 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
4b1cadfed2764e127594c4ae02333a28d8a51cc6
SHA256
58c3c85af5465a1004edd37e66b74ab238804d88ccd88a8da4f429eb5e8375db
MD5
9a1dd267053a5b0a97c393d3a3623ac0

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process