UAC Bypass Using WOW64 Logger DLL Hijack — Detection Rule

Detects the pattern of UAC Bypass using a WoW64 logger DLL hijack (UACMe 30)

Read the full analysis on IntelFusions