Update Tttracer.yml Tags

Added Tags:
Execute EXE
This commit is contained in:
hegusung 2024-10-13 17:16:29 +02:00 committed by GitHub
parent 7d9ce4b53a
commit 9fddf9b1b8
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194

View File

@ -11,6 +11,8 @@ Commands:
Privileges: Administrator Privileges: Administrator
MitreID: T1127 MitreID: T1127
OperatingSystem: Windows 10 1809 and newer, Windows 11 OperatingSystem: Windows 10 1809 and newer, Windows 11
Tags:
- Execute: EXE
- Command: TTTracer.exe -dumpFull -attach pid - Command: TTTracer.exe -dumpFull -attach pid
Description: Dumps process using tttracer.exe. Requires administrator privileges Description: Dumps process using tttracer.exe. Requires administrator privileges
Usecase: Dump process by PID Usecase: Dump process by PID