Update Tttracer.yml Tags

Added Tags:
Execute EXE
This commit is contained in:
hegusung
2024-10-13 17:16:29 +02:00
committed by GitHub
parent 7d9ce4b53a
commit 9fddf9b1b8

View File

@@ -11,6 +11,8 @@ Commands:
Privileges: Administrator
MitreID: T1127
OperatingSystem: Windows 10 1809 and newer, Windows 11
Tags:
- Execute: EXE
- Command: TTTracer.exe -dumpFull -attach pid
Description: Dumps process using tttracer.exe. Requires administrator privileges
Usecase: Dump process by PID