
Rule Info
Name
Suspicious File Dropped by Office Application
Author
Florian Roth (Nextron Systems)
Description
Detects suspicious files like scripts, executables, and other file types dropped by Microsoft Office applications.
Reference
Internal Research
Date
2025-01-14 00:00:00
Modified
None
Id
ba43c843-a44b-42c0-bfcb-093b3d8eb1d1
Tags
attack.t1566
Type
Nextron Sigma feed only (private)