MALWARE-OTHER --
MALWARE-OTHER PowerShell invocation with ExecutionPolicy Bypass attempt
This event is generated when a compiled binary contains PowerShell invocation with options to bypass ExecutionPolicy Impact: A Network Trojan was detected Details: PowerShell invocation from within a compiled application which bypasses ExecutionPolicy is suspect behavior. This could potentially be used to download and execute malicious PowerShell scripts. Ease of Attack:
No information provided
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
None
No information provided
None