Legitimate Application Dropped Executable (f0540f7e-2db3-4432-b9e0-3965486744bc)
Detects programs on a Windows system that should not write executables to disk
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Legitimate Application Dropped Executable (f0540f7e-2db3-4432-b9e0-3965486744bc) | Sigma-Rules | System Binary Proxy Execution - T1218 (457c7820-d331-465a-915e-42f85500ccc4) | Attack Pattern | 1 |