Title:Potential LethalHTA Technique Execution Status:test Description:Detects potential LethalHTA technique where the "mshta.exe" is spawned by an "svchost.exe" process References: -https://codewhitesec.blogspot.com/2018/07/lethalhta.html Author: Markus Neis Date: 2018-06-07 modified:2023-02-07 Tags: