Managed XDR

0x200076bd_0_1738813569.eml — malware analysis report

File info

Filename
0x200076bd_0_1738813569.eml
File type
RFC 822 mail, ASCII text, with CRLF line terminators
File size
972.6 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
4aedcdecaf1c4ecc7848eb0371fbf7732f638b87
SHA256
c56eef5ec1188d1b3a4ca1544de6b780bc1d443b9ed37c071750b90edba91438
MD5
8033ad28817f7f8a683ffe9904e21461

Signatures

Execution

T1059 autoit: AutoIt script execution detected

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1027.002 packer_entropy: Probably contains compressed or encrypted data
T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity