Use of Remote.exe (4eddc365-79b4-43ff-a9d7-99422dc34b93)
Remote.exe is part of WinDbg in the Windows SDK and can be used for AWL bypass and running remote files.
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Use of Remote.exe (4eddc365-79b4-43ff-a9d7-99422dc34b93) | Sigma-Rules | Trusted Developer Utilities Proxy Execution - T1127 (ff25900d-76d5-449b-a351-8824e62fc81b) | Attack Pattern | 1 |