Managed XDR

vtdl_1748806748_1sqje4f3 — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_1748806748_1sqje4f3
Тип файла
MS Windows shortcut, Item id list present, ctime=Thu May 29 09:27:22 2025, mtime=Thu May 29 09:27:22 2025, atime=Thu May 29 09:27:22 2025, length=0, window=hide
Размер файла
1 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
3a4ec904a921743dc63edcc8332eff9b3afac803
SHA256
ae45a2c1cd1713353eadbc9ef7b9ee7bc3b42c2a9037425eaf6a72403f4a514c
MD5
42b135f72b7c19fc16c1e030a0a07c23

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process