Managed XDR

92b7e0e3f7de50292b51ddc2ade281d6.virus — отчёт о динамическом анализе вредоносного файла

Информация о файле

Имя файла
92b7e0e3f7de50292b51ddc2ade281d6.virus
Тип файла
MS Windows shortcut, Item id list present, Has command line arguments, Icon number=3, ctime=Mon Jan 1 00:00:00 1601, mtime=Mon Jan 1 00:00:00 1601, atime=Mon Jan 1 00:00:00 1601, length=0, window=hidenormalshowminimized
Размер файла
888 Bytes
Первое обнаружение
Последнее обнаружение

Окружение

win7/x86 en

Хеши

SHA1
14a29455b2fa5a76572801e10545ec00fe915c6c
SHA256
e6e518ccb14d771b8134f63618967718c7f13abaa95a11ebe3b5d1feb88571dd
MD5
92b7e0e3f7de50292b51ddc2ade281d6

Сигнатуры

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
unexpected_exception: Unexpected exception
creates_suspended_process: Creates suspended process
get_policy_info: Retrieves information about a Policy object