Suspicious Service Binary Directory (883faa95-175a-4e22-8181-e5761aeb373c)
Detects a service binary running in a suspicious directory
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Indirect Command Execution - T1202 (3b0e52ce-517a-4614-a523-1bd5deef6c5e) | Attack Pattern | Suspicious Service Binary Directory (883faa95-175a-4e22-8181-e5761aeb373c) | Sigma-Rules | 1 |