DCOM InternetExplorer.Application Iertutil DLL Hijack - Security — Detection Rule

Detects a threat actor creating a file named `iertutil.dll` in the `C:\Program Files\Internet Explorer\` directory over the network for a DCOM InternetExplorer DLL Hijack scenario.

Read the full analysis on IntelFusions