Managed XDR

a80bfe256d1063fa6f1f2b02cdb29daf.virus — malware analysis report

File info

Filename
a80bfe256d1063fa6f1f2b02cdb29daf.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
1b9506808a2a55c71cac3770ba58c8a198d4bb52
SHA256
c240c4cf6877008c79910a46a9a4c954199ca8272a516a908abc4d8b9eea8fa3
MD5
a80bfe256d1063fa6f1f2b02cdb29daf

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity