Managed XDR

e6a8175cc93a7fb60829b44c42466b12.virus — malware analysis report

File info

Filename
e6a8175cc93a7fb60829b44c42466b12.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
154888d60013791f7def5c440fbeec9354298516
SHA256
9a01a5976ca4c02cef5429ad09a9c8725597428467f8f06e0c90b4b649030bc4
MD5
e6a8175cc93a7fb60829b44c42466b12

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity