==================================================

CREATED: WIN-MSHTA-INJECT-REMOTETHREAD (#1195)

Description

Identifies instances of mshta.exe injecting a remotethread into another process.

References

ATT&CK Techniques T1170 and T1055

Did this answer your question?