Arbitrary File Download Via MSOHTMED.EXE (459f2f98-397b-4a4a-9f47-6a5ec2f1c69d)
Detects usage of "MSOHTMED" to download arbitrary files
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
System Binary Proxy Execution - T1218 (457c7820-d331-465a-915e-42f85500ccc4) | Attack Pattern | Arbitrary File Download Via MSOHTMED.EXE (459f2f98-397b-4a4a-9f47-6a5ec2f1c69d) | Sigma-Rules | 1 |