Splunk SPLK-5001 Question Answer
During their shift, an analyst receives an alert about an executable being run from C:\Windows\Temp. Why should this be investigated further?
Splunk SPLK-5001 Question Answer
During their shift, an analyst receives an alert about an executable being run from C:\Windows\Temp. Why should this be investigated further?