Managed XDR

vtdl_z4jtgqso — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_z4jtgqso
Тип файла
PE32 executable (GUI) Intel 80386, for MS Windows
Размер файла
331 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
ccb329fc82c3787ccc9d15d7c0ffd38e6f04be09
SHA256
f57d1cbfa310b9c706d10a4462a0f92850bdfec82d98d2708e9631c27e25d16b
MD5
d1e543ec3ce5344dd87a351e499d4f58

Сигнатуры

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data

Other

yara_rules: Static rules
static_pe_anomaly: The PE file structure contains anomalies
process_crashed: One of the processes has failed
no_graphical_activity: No graphic activity
has_pdb: This executable file has a PDB path
origin_langid: Unconventional language of the executable file