Skip to content

Hide Navigation Hide TOC

Suspicious Scheduled Task Creation (3a734d25-df5c-4b99-8034-af1ddb5883a4)

Detects suspicious scheduled task creation events. Based on attributes such as paths, commands line flags, etc.

Cluster A Galaxy A Cluster B Galaxy B Level
Suspicious Scheduled Task Creation (3a734d25-df5c-4b99-8034-af1ddb5883a4) Sigma-Rules Scheduled Task - T1053.005 (005a06c6-14bf-4118-afa0-ebcd8aebb0c9) Attack Pattern 1
Scheduled Task - T1053.005 (005a06c6-14bf-4118-afa0-ebcd8aebb0c9) Attack Pattern Scheduled Task/Job - T1053 (35dd844a-b219-4e2b-a6bb-efa9a75995a9) Attack Pattern 2