diff --git a/yml/OSBinaries/SystemSettingsAdminFlow.yml b/yml/OSBinaries/SystemSettingsAdminFlow.yml index d8ac581..5de5450 100644 --- a/yml/OSBinaries/SystemSettingsAdminFlow.yml +++ b/yml/OSBinaries/SystemSettingsAdminFlow.yml @@ -1,3 +1,4 @@ +--- Name: SystemSettingsAdminFlow.exe Description: SystemSettingsAdminFlows.exe is responsible for the administrator privileges that are required for opening/editing/removing files. Author: 'Jason Phang Vern-Onn' @@ -14,7 +15,7 @@ Commands: MitreID: T1562.001 OperatingSystem: Windows 10 1803, Windows 10 1703 Tags: - - Execute + - Execute: EXE - Tamper Full_Path: - Path: C:\Windows\System32\SystemSettingsFlowAdmin.exe @@ -28,4 +29,4 @@ Resources: - Link: https://www.huntress.com/blog/its-not-safe-to-pay-safepay Acknowledgement: - Person: Alden Schmidt - - Person: Matt Anderson \ No newline at end of file + - Person: Matt Anderson