Managed XDR

1nfn6dkw.hta — malware analysis report

File info

Filename
1nfn6dkw.hta
File type
HTML document, ASCII text, with very long lines, with CRLF line terminators
File size
292.6 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
cd714fb15aff3b7a1f9a4ad880899d68931dabf4
SHA256
8c6fc87b0d6e8205e67a7d4be4b23f713d652933a666df6a5c8f12f6ef22b2b0
MD5
bb1194594e5170fbb31f5ff00b9c6357

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1497.003 antisandbox_sleep: The process attempted to slow down analysis
T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Discovery

T1497.003 antisandbox_sleep: The process attempted to slow down analysis

Other

yara_rules: Static rules
no_graphical_activity: No graphic activity
get_policy_info: Retrieves information about a Policy object