Managed XDR

scratch-zoo-2025-04-12...ae33d697a192d803613863 — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
scratch-zoo-2025-04-12-5597198ce3ae33d697a192d803613863
Тип файла
MS Windows shortcut, Item id list present, ctime=Thu Jan 16 09:04:20 2025, mtime=Thu Jan 16 09:04:20 2025, atime=Thu Jan 16 09:04:20 2025, length=0, window=hide
Размер файла
1 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
4c64d2e4901b5777978f200d5cd888e2edfb3f22
SHA256
b268591a1af670e598a1fa42a8116d435e35b00a08cd13a3f8305e58d2524653
MD5
5597198ce3ae33d697a192d803613863

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process