Managed XDR

vtdl_1752179018_tkgzedhx — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_1752179018_tkgzedhx
Тип файла
MS Windows shortcut, Item id list present, Points to a file or directory, Has command line arguments, Icon number=3, Archive, ctime=Sat Dec 7 09:09:07 2019, mtime=Fri Jul 4 00:43:45 2025, atime=Sat Dec 7 09:09:07 2019, length=71680, window=hide
Размер файла
1.6 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
5ec7b17811064b4268a7f21bbcdd59a29ec77ae1
SHA256
206032c2b82284d4e0713363a37fa14037b3e20333719cfd79417c8a8f0f7fe1
MD5
1105c93ea5b694178dcc4464afe7d5b7

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Discovery

T1518 locates_browser: Attempts to identify where browsers are installed

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process
message_box: Displays a message
get_policy_info: Retrieves information about a Policy object