Suspicious Reconnaissance Activity Via GatherNetworkInfo.VBS (07aa184a-870d-413d-893a-157f317f6f58)
Detects execution of the built-in script located in "C:\Windows\System32\gatherNetworkInfo.vbs". Which can be used to gather information about the target machine