Managed XDR

33333 — malware analysis report

File info

Filename
33333
File type
Zip archive data, at least v2.0 to extract
File size
89.8 KB
First seen
Last seen

Environment

winxp/x86 en

Hashes

SHA1
9568ff7f6beeb6cd7474d178bba8e3189208375e
SHA256
951c5966e025a49ec62339088e84d43eec1e8e2126afd2f7beca4ff2a142b23c
MD5
46b4d9c3f3e955c8ad2714ccba114ff9

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
creates_in_programdata: Creates files in the ProgramData directory