<<< Hide Navigation Hide TOC >>>
UAC Bypass Using Disk Cleanup (b697e69c-746f-4a86-9f59-7bfff8eab881)
Detects the pattern of UAC Bypass using scheduled tasks and variable expansion of cleanmgr.exe (UACMe 34)
Cluster A![]() |
Galaxy A![]() |
Cluster B![]() |
Galaxy B![]() |
Level![]() |
---|---|---|---|---|
UAC Bypass Using Disk Cleanup (b697e69c-746f-4a86-9f59-7bfff8eab881) | Sigma-Rules | Bypass User Account Control - T1548.002 (120d5519-3098-4e1c-9191-2aa61232f073) | Attack Pattern | 1 |
Abuse Elevation Control Mechanism - T1548 (67720091-eee3-4d2d-ae16-8264567f6f5b) | Attack Pattern | Bypass User Account Control - T1548.002 (120d5519-3098-4e1c-9191-2aa61232f073) | Attack Pattern | 2 |