Managed XDR

vtdl_1751963084_5k2_tq4b — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_1751963084_5k2_tq4b
Тип файла
MS Windows shortcut, Item id list present, ctime=Mon Jul 7 05:30:38 2025, mtime=Mon Jul 7 05:30:38 2025, atime=Mon Jul 7 05:30:38 2025, length=0, window=hide
Размер файла
1 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
8f432806d17adc35058e7d2bcd5d8329c1467bd5
SHA256
b30206db2a0fc0bf2fee019bf16560e873887dac07b81134df7a03bc5c2df1ae
MD5
8094bf97e95f055737e5164288630377

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process