WinDefAVEmu_goatfiles

Created the Monday 19 August 2024. Updated 3 months, 4 weeks ago.

Goat files inside Defender AV Emulator's file system. Often used in PE malware as an evasion technique to evade executing in Windows Defender's AV Emulator.


Technique Identifier

U1348


Detection Rules

Contributor


Sleeping Alien

Subscribe to our Newsletter

Don't miss out on the latest and greatest updates from us! Subscribe to our newsletter and be the first to know about exciting content and future updates.