Managed XDR

b2101c063868492f19b9f3b589cb2aa9.virus — malware analysis report

File info

Filename
b2101c063868492f19b9f3b589cb2aa9.virus
File type
PE32 executable (GUI) Intel 80386 (stripped to external PDB), for MS Windows
File size
14 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
208e1e6b0b17259454d134ffc5cc4a0c748161cb
SHA256
810cfbef02d032c28102db58b3cdd0203e77bcba2ae85384e2992b05bc8b988d
MD5
b2101c063868492f19b9f3b589cb2aa9

Signatures

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity