Managed XDR

vtdl_7ic4cjgm — malware analysis report

File info

Filename
vtdl_7ic4cjgm
File type
SMTP mail, UTF-8 Unicode text
File size
101.9 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
109026282aedb2535e5d8db74278014847046741
SHA256
2a210a18378a17e45deffbacce6baebafaae93c5b8dc921ff306b354127dfd46
MD5
bcc74d2deec16d25cf90b07b2336830b

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
get_policy_info: Retrieves information about a Policy object
test_check_service: Starts services
antisandbox_check_graphics_card: Uses CreateDXGIFactory, potentially to detect graphics card