Managed XDR

2329b1d43be0eecbf392c3b8718470c5.virus — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
2329b1d43be0eecbf392c3b8718470c5.virus
Тип файла
MS Windows shortcut, Item id list present, ctime=Mon Oct 23 21:11:51 2023, mtime=Mon Oct 23 21:11:51 2023, atime=Mon Oct 23 21:11:51 2023, length=0, window=hide
Размер файла
655 Bytes
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
810ca79dac6bbdcbf9bcb7fabf874af079ff131f
SHA256
0fd677f464b3124b956ec5240a924678d35e665e8af1a132e830230da7932cbf
MD5
2329b1d43be0eecbf392c3b8718470c5

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process