Connection to Malicious Converter App Domains
This rule detects network connections to domains known to host and distribute malicious file converter applications that install Remote Access Trojans (RATs).
Microsoft Sentinel (KQL)

This rule detects network connections to domains known to host and distribute malicious file converter applications that install Remote Access Trojans (RATs).

Already have an account?