Skip to content

Hide Navigation Hide TOC

Potential PsExec Remote Execution (ea011323-7045-460b-b2d7-0f7442ea6b38)

Detects potential psexec command that initiate execution on a remote systems via common commandline flags used by the utility

Cluster A Galaxy A Cluster B Galaxy B Level
Potential PsExec Remote Execution (ea011323-7045-460b-b2d7-0f7442ea6b38) Sigma-Rules Malware - T1587.001 (212306d8-efa4-44c9-8c2d-ed3d2e224aa0) Attack Pattern 1
Malware - T1587.001 (212306d8-efa4-44c9-8c2d-ed3d2e224aa0) Attack Pattern Develop Capabilities - T1587 (edadea33-549c-4ed1-9783-8f5a5853cbdf) Attack Pattern 2