Managed XDR

uset.hta — malware analysis report

File info

Filename
uset.hta
File type
HTML document, ASCII text, with very long lines, with CRLF line terminators
File size
114.4 KB
First seen
Last seen

Environment

win7/x86 en

Hashes

SHA1
d8a2ea973d788f187f32f848f1003ee716791410
SHA256
7c6943f59dc87f63398759cc74601754622703fb471d58072853188c04215a32
MD5
27bfd712676e2ad28b12cee7fa1ca0e2

Signatures

Privilege Escalation

T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Defense Evasion

T1497.003 antisandbox_sleep: The process attempted to slow down analysis
T1134 opens_thread_token: Opens the access token associated with a thread
T1134 opens_process_token: Opens the access token associated with a process

Credential Access

T1555.003 cookie_files: Accesses cookie files
T1552 cookie_files: Accesses cookie files

Discovery

T1497.003 antisandbox_sleep: The process attempted to slow down analysis

Other

yara_rules: Static rules
get_policy_info: Retrieves information about a Policy object