
Rule Info
Name
Potential DLL Sideloading via MonitoringHost.exe
Author
MalGamy (Nextron Systems)
Description
Detects potential DLL sideloading of 'HealthServiceRuntime.dll'
Date
2024-12-20 00:00:00
Modified
None
Id
0de30f37-866a-4a55-913a-7592fec09d47
Tags
attack.defense-evasion attack.privilege-escalation attack.t1574.001
Type
Nextron Sigma feed only (private)