LetsDefend Monitoring Alert
Suspicious WMI Activity
Mar, 15, 2021, 10:57 PM
Event ID: 81
Event Time: Mar, 15, 2021, 10:57 PM
Rule Name: SOC134 - Suspicious WMI Activity
Alert Type: Malware
MITRE Technique:
T1598.001 - Reconnaissance - Spearphishing Service,
Severity: High
Security Analyst