Hide Navigation Hide TOC MsiExec Web Install (f7b5f842-a6af-4da5-9e95-e32478f3cd2f) Detects suspicious msiexec process starts with web addresses as parameter Cluster A Galaxy A Cluster B Galaxy B Level MsiExec Web Install (f7b5f842-a6af-4da5-9e95-e32478f3cd2f) Sigma-Rules Msiexec - T1218.007 (365be77f-fc0e-42ee-bac8-4faf806d9336) Attack Pattern 1 MsiExec Web Install (f7b5f842-a6af-4da5-9e95-e32478f3cd2f) Sigma-Rules Ingress Tool Transfer - T1105 (e6919abc-99f9-4c6c-95a5-14761e7b2add) Attack Pattern 1 Msiexec - T1218.007 (365be77f-fc0e-42ee-bac8-4faf806d9336) Attack Pattern System Binary Proxy Execution - T1218 (457c7820-d331-465a-915e-42f85500ccc4) Attack Pattern 2