Windows Spooler Service Suspicious Binary Load (02fb90de-c321-4e63-a6b9-25f4b03dfd14)
Detect DLL Load from Spooler Service backup folder
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Hijack Execution Flow - T1574 (aedfca76-3b30-4866-b2aa-0f1d7fd1e4b6) | Attack Pattern | Windows Spooler Service Suspicious Binary Load (02fb90de-c321-4e63-a6b9-25f4b03dfd14) | Sigma-Rules | 1 |