// soc investigation 2026-05-04
SOC308 Suspicious Rundll32 Execution Detected
letsdefend Medium closed ✓ true positive
analyst verdict TRUE POSITIVE