https://medium.com/@topcyberdawg/letsdefend-soc-walkthrough-soc125-suspicious-rundll32-activity-693970049452