Managed XDR

b19729786d0345474f1ce9...714e63001f12dd07b8.exe — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
b19729786d0345474f1ce9720c87177b714a51b9cb1af6714e63001f12dd07b8.exe
Тип файла
PE32+ executable (console) x86-64, for MS Windows
Размер файла
362.4 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x64 en

Хеши

SHA1
042e9e930ee5da898cea8fd134ffe4fcb06fc5d5
SHA256
b19729786d0345474f1ce9720c87177b714a51b9cb1af6714e63001f12dd07b8
MD5
7fd77dfbd58a6eba5175f2dc283e7fe2

Сигнатуры

Privilege Escalation

T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1036.001 invalid_authenticode: Digital signature of the executable file has failed the verification
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
pe_overlay: PE file contains overlay