mirror of
https://github.com/LOLBAS-Project/LOLBAS
synced 2025-08-23 17:36:03 +02:00
Adjustment
This commit is contained in:
@@ -16,9 +16,9 @@ Full_Path:
|
|||||||
- Path: C:\Windows\System32\tttracer.exe
|
- Path: C:\Windows\System32\tttracer.exe
|
||||||
- Path: C:\Windows\SysWOW64\tttracer.exe
|
- Path: C:\Windows\SysWOW64\tttracer.exe
|
||||||
Code_Sample:
|
Code_Sample:
|
||||||
- Code:
|
- Code:
|
||||||
Detection:
|
Detection:
|
||||||
- IOC: Parent child relationship. Tttracer parent for executed command
|
- IOC: Parent child relationship. Tttracer parent for executed command
|
||||||
Resources:
|
Resources:
|
||||||
- Link: https://twitter.com/oulusoyum/status/1191329746069655553
|
- Link: https://twitter.com/oulusoyum/status/1191329746069655553
|
||||||
Acknowledgement:
|
Acknowledgement:
|
||||||
|
Reference in New Issue
Block a user