Adding Windows 11 reference to missed-out executables

This commit is contained in:
Wietze
2021-12-14 16:57:56 +00:00
parent 6793a7d238
commit e51caad3dd
4 changed files with 8 additions and 8 deletions

View File

@@ -10,14 +10,14 @@ Commands:
Category: Reconnaissance
Privileges: Administrator
MitreID: T1040
OperatingSystem: Windows 10 1809 and later
OperatingSystem: Windows 10 1809 and later, Windows 11
- Command: pktmon.exe filter add -p 445
Description: Select Desired ports for packet capture
Usecase: Look for interesting traffic such as telent or FTP
Category: Reconnaissance
Privileges: Administrator
MitreID: T1040
OperatingSystem: Windows 10 1809 and later
OperatingSystem: Windows 10 1809 and later, Windows 11
Full_Path:
- Path: c:\windows\system32\pktmon.exe
- Path: c:\windows\syswow64\pktmon.exe