← Back to Explore
S0190
S0190
7
Detections
1
Sources
0
Threat Actors
BY SOURCE
7sigma
PROCEDURES (3)
Suspicious3 detections
Auto-extracted: 3 detections for suspicious
Network Connection Monitoring2 detections
Auto-extracted: 2 detections for network connection monitoring
Download2 detections
Auto-extracted: 2 detections for download
DETECTIONS (7)
Bitsadmin to Uncommon IP Server Address
sigmahigh
Bitsadmin to Uncommon TLD
sigmahigh
File Download Via Bitsadmin
sigmamedium
File Download Via Bitsadmin To A Suspicious Target Folder
sigmahigh
File With Suspicious Extension Downloaded Via Bitsadmin
sigmahigh
Suspicious Download From Direct IP Via Bitsadmin
sigmahigh
Suspicious Download From File-Sharing Website Via Bitsadmin
sigmahigh