Managed XDR

vtdl_t5498lhi — malware analysis report

File info

Filename
vtdl_t5498lhi
File type
MS Windows shortcut, Item id list present, Points to a file or directory, Has Description string, Has command line arguments, Icon number=79, Archive, ctime=Sat Apr 10 08:34:22 2021, mtime=Mon Feb 12 19:19:44 2024, atime=Sat Apr 10 08:34:22 2021, length=236544, window=hidenormalshowminimized
File size
2.9 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
af430318e3224f1ef49599d1f22523fcf51f3243
SHA256
f9fcadb6db8948121120744d5e117a93fba41900efa7ac95f4e77d8851d7475b
MD5
836b033467e9ca8ad2da0ecf65d983dd

Signatures

Execution

T1204 suspicious_lnk: LNK file with suspicious content
T1059 suspicious_cmd_arguments: Cmd.exe uses file as a data source for the standard input stream

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process