Managed XDR

13bcdf20563fd4423acc4291fbba5223.virus — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
13bcdf20563fd4423acc4291fbba5223.virus
Тип файла
MS Windows shortcut, Item id list present, ctime=Wed Feb 21 04:58:01 2024, mtime=Wed Feb 21 04:58:01 2024, atime=Wed Feb 21 04:58:01 2024, length=0, window=hide
Размер файла
702 Bytes
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
dce9e9296bab3f7c7a44abb09357a45e56cf40ef
SHA256
55de800d0847911683e2750ffdc5551771741a36fd62c37ad26bd65016453bd4
MD5
13bcdf20563fd4423acc4291fbba5223

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
no_graphical_activity: No graphic activity
creates_suspended_process: Creates suspended process