Access To Crypto Currency Wallets By Uncommon Applications (f41b0311-44f9-44f0-816d-dd45e39d4bc8)
Detects file access requests to crypto currency files by uncommon processes. Could indicate potential attempt of crypto currency wallet stealing.
Cluster A | Galaxy A | Cluster B | Galaxy B | Level |
---|---|---|---|---|
Access To Crypto Currency Wallets By Uncommon Applications (f41b0311-44f9-44f0-816d-dd45e39d4bc8) | Sigma-Rules | OS Credential Dumping - T1003 (0a3ead4e-6d47-4ccb-854c-a6a4f9d96b22) | Attack Pattern | 1 |