mirror of
https://github.com/LOLBAS-Project/LOLBAS
synced 2025-01-15 00:01:18 +01:00
Fix sigmaHQ ref (#300)
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
This commit is contained in:
parent
f5a3812c91
commit
e08b10f437
@ -14,7 +14,7 @@ Commands:
|
|||||||
Full_Path:
|
Full_Path:
|
||||||
- Path: c:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\Extensions\Microsoft\LiveShare\Agent\vsls-agent.exe
|
- Path: c:\Program Files (x86)\Microsoft Visual Studio\2019\Professional\Common7\IDE\Extensions\Microsoft\LiveShare\Agent\vsls-agent.exe
|
||||||
Detection:
|
Detection:
|
||||||
- Sigma: https://github.com/SigmaHQ/sigma/blob/master/rules/windows/process_creation/proc_creation_win_susp_vslsagent_agentextensionpath_load.yml
|
- Sigma: https://github.com/SigmaHQ/sigma/blob/6312dd1d44d309608552105c334948f793e89f48/rules/windows/process_creation/proc_creation_win_vslsagent_agentextensionpath_load.yml
|
||||||
Resources:
|
Resources:
|
||||||
- Link: https://twitter.com/bohops/status/1583916360404729857
|
- Link: https://twitter.com/bohops/status/1583916360404729857
|
||||||
Acknowledgement:
|
Acknowledgement:
|
||||||
|
Loading…
Reference in New Issue
Block a user