Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)

This commit is contained in:
frack113
2021-11-25 10:42:26 +01:00
committed by GitHub
parent f7b30775a4
commit 2d28767c04
4 changed files with 4 additions and 0 deletions

View File

@@ -14,6 +14,7 @@ Commands:
Full_Path:
- Path: C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.11.2521.0_x64__8wekyb3d8bbwe\AppInstaller.exe
Detection:
- Sigma: https://github.com/SigmaHQ/sigma/blob/bdb00f403fd8ede0daa04449ad913200af9466ff/rules/windows/dns_query/win_dq_lobas_appinstaller.yml
Resources:
- Link: https://twitter.com/notwhickey/status/1333900137232523264
Acknowledgement: