Managed XDR

vtdl_un2rxkzw — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
vtdl_un2rxkzw
Тип файла
MS Windows shortcut, Item id list present, ctime=Wed Sep 18 08:30:00 2024, mtime=Wed Sep 18 08:30:00 2024, atime=Wed Sep 18 08:30:00 2024, length=0, window=hide
Размер файла
1.1 KB
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
41b0bd96bfd227450568a2f5ddecd91990853220
SHA256
cbf88657dce32af3f7a39e4a8ac14ecf19dd6c25d0c742af4c8365f091b9710c
MD5
af64ce5f725dc0cd6eb5cbcc1d49e964

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process