Shellcode
Shellcode search terms have the prefix “Shellcode - ”, for example, “Shellcode - Source - Not From Login”
Field |
Description |
---|---|
Source - Not From Login |
Indicates that a shell process has no tty that is associated with it |
Source - Powershell |
Indicates that the process has powershell dll loaded (System.Management.Automation) |