Self-Deleting RAT Binary Post-Execution (GHAPPIER Final Stage)
Detects instances where an executable file (exe, dll, js, cjs) deletes itself within 30 seconds of execution. This is a common technique used by malware to remove its installation artifact after spawning a persistent process or to evade signature-based detection.
CQL

