Managed XDR

9b2a9d2d3db782a88b2db3...f9cd394327d1d41414.lnk — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
9b2a9d2d3db782a88b2db346864bb53ab0e08b02463555f9cd394327d1d41414.lnk
Тип файла
Windows shortcut file
Размер файла
1.4 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
f123131665a7ac7f6334eef6ba31b983d725043f
SHA256
2559dc9326020b0049ffeafed81745c41cf2e7a1df32f9cdeae5bc974365f4d2
MD5
dda5ab73ece985f016553dbb6e48b659

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process