Managed XDR

tweet-attacks-account-...tor-tweetattacksac.exe — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
tweet-attacks-account-creator-tweetattacksac.exe
Тип файла
PE32 executable (console) Intel 80386, for MS Windows
Размер файла
343 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
3dfcf4c24e3b4f6614077ec91e4415fc25cb610b
SHA256
d03b0de4fafe113c8b3f485e5449cc3376ba846959650f45d2f1e31ae938a6ff
MD5
ca013b3945fb4887ce539ba9eb96aa92

Сигнатуры

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_process_token: Opens the access token associated with a process

Discovery

T1518 locates_browser: Attempts to identify where browsers are installed

Other

yara_rules: Static rules