Malware - FlowerStorm RFQ Phish Kit - Hash Detected
This rule monitors endpoint events (file, process, and image load) for a specific malicious MD5 hash or the presence of a specific file name pattern 'Request for Quotation' often used in malicious lures. It provides visibility into potential execution of known malicious payloads.
Microsoft Sentinel (KQL)

