Commit Graph

389 Commits

Author SHA1 Message Date
hegusung
0a8785481d
Update Ie4uinit.yml
Added Tags:
Execute INF
Input: Fixed Format
2024-10-13 13:26:30 +02:00
hegusung
bbe0681a9a
Update Hh.yml Tags and Added command
Added the command to execute remote CHM files
Added Tags
2024-10-13 13:24:23 +02:00
hegusung
4e60ead5f7
Update Gpscript.yml Tags
Added Tags:
- Execute CMD
- Input Fixed Format
2024-10-13 13:15:50 +02:00
hegusung
eb06fb5266
Update Ftp.yml Tags
Added Tags:
- Execute CMD
- Input Custom Format
2024-10-13 13:13:21 +02:00
hegusung
d8c1def350
Update Fsutil.yml Tags
Added Tags:
Execute: EXE
Input: Fixed Format
2024-10-13 13:12:20 +02:00
hegusung
3db62fffdc
Update Forfiles.yml Tags
Added Tags:
- Execute EXE
- Input: Custom Format
2024-10-13 13:11:05 +02:00
hegusung
44a2e0c6e1
Update Extexport.yml Tags
Added Tags: 
- Input CustomFormat
2024-10-13 13:08:11 +02:00
hegusung
ec76e9e49f
Update Explorer.yml Tags
Added Tags:
- Execute EXE
- Input: Custom Format
2024-10-13 13:07:06 +02:00
hegusung
524ef32173
Update Dnscmd.yml Tags
Added Tags:
- Execution: Remote
- Input: Custom Format
2024-10-13 13:05:06 +02:00
hegusung
0c36af16d5
Update Diskshadow.yml Tags
Added Tags:
- Execute CMD
- Input CustomFormat
2024-10-13 13:03:33 +02:00
hegusung
daee90f6cd
Update Dfsvc.yml Tags
Added Tags:
- Execute ClickOnce
- Execute Remote
- Input Custom Format
2024-10-13 12:37:51 +02:00
hegusung
7642b8cd86
Update CustomShellHost.yml Tags
Added Tags:
- Execute EXE
- Input Fixed Format
2024-10-13 12:35:23 +02:00
hegusung
20ff06dd26
Update Cscript.yml Tags
Added Input tag
2024-10-13 12:33:41 +02:00
hegusung
2bf4516881
Update Control.yml
Added Execution section to Control.exe

Added tags:
- Input Custom Format
2024-10-13 12:26:15 +02:00
hegusung
bb484e278e
Update Conhost.yml
Execute and Input Tags added
2024-10-13 12:19:14 +02:00
hegusung
6546853446
Update Cmstp.yml
Tags:
Changed Input: INF to Execute INF for consistency
Inout: Customformat added
2024-10-13 12:16:28 +02:00
hegusung
3123301802
Update Certoc.yml
Added Tags:
- Input: CustomFormat
2024-10-13 12:06:18 +02:00
hegusung
6d4ac1c680
Update Bash.yml
Added tags:
- Execute: CMD
- Input: Custom format
2024-10-13 12:02:27 +02:00
hegusung
a199ff5deb
Update Atbroker.yml
Added the following tags:
- Execute: EXE
- Input: Custom Format
2024-10-13 11:59:14 +02:00
hegusung
58d2f4c79c
Update At.yml
Added tags
- Execute: EXE
- Input: Custom Format
2024-10-13 11:55:20 +02:00
hegusung
e5731033b2
Update Addinutil.yml
Tags added:
- .NetObjects
- Fixed Format
2024-10-13 11:50:14 +02:00
hegusung
56ad2e7593
Update Installutil.yml
Changed tags Execute DLL to Execute .NetDLL
Added Execute: .NetEXE tag
2024-10-13 11:11:44 +02:00
Wietze
39a7120d40
Adding Windows file path validation for values of File_Path (#403) 2024-10-01 23:14:19 +01:00
Eron Clarke
50e17c089a
Add ComputerDefaults.yml (#400)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-09-25 23:47:41 +01:00
Avihay Eldad
9b1a98794b
Update Wmic.yml (#355) 2024-09-15 17:31:17 +01:00
Ekitji
9ee5548623
Updates in Stordiag.exe (#394) 2024-09-10 13:31:38 +01:00
p4yl0ad
cfd827fe6d
Fixing some paths / adding some paths, this will improve upstream hunting tool efficacy if proper paths are referenced in the yml (#392) 2024-09-07 15:07:46 +01:00
deadjakk
61bff01584
Odbcconf.yml - Corrected incorrect privileges (#396) 2024-09-07 15:01:46 +01:00
unrooted
659a0240e8
Update Winget.yml (#384)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-08-17 23:52:52 +01:00
TAbdiukov
5b12df2b93
Makecab - LOLBAS command, more information about Windows compatibility (#389)
---------
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-08-17 22:16:07 +01:00
TAbdiukov
5826e4d415
Adding more operating systems to extrac32.exe (#387)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-08-17 22:10:48 +01:00
TAbdiukov
e09cf1066f
Add Diantz directives/DDF entry to diantz.exe (#390)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-08-17 22:02:55 +01:00
Avihay Eldad
74ffaa534f
Add Ngen.exe (#357)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-07-15 20:59:23 +01:00
Dr. Gerald Yaya
5d80e48159
Correct Winget.yml Spelling (#379)
Corrected some spelling mistakes in the "Privileges" node of Winget.yml
2024-06-03 17:52:55 +01:00
Borja
2185ade1f2
Update Msiexec.yml (#369) 2024-05-22 18:59:51 +01:00
Mozhar Alhosni
91a3e80d8f
Update Csc.yml (#376)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-05-22 18:55:40 +01:00
Lino
5d7ec48f4f
Update Msiexec.yml (#377)
Fixed spelling
2024-05-20 16:49:27 -04:00
Wietze
2cc0ee99e6
Applying MITRE ATT&CK v15 changes (#370)
https://attack.mitre.org/resources/updates/updates-april-2024/
2024-04-24 15:10:59 +01:00
frack113
2cc01b0113
Add Detection Sigma ref (#368) 2024-04-19 18:53:37 +01:00
irEasty
fc23c999e6
Create wbadmin (#364)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-04-05 19:38:21 +01:00
Wietze
ebbf08ec4d
Adding tags (closes #9, #318) (#362)
* Adding various tags as a first iteration

* Adding quotes

* Adding 'Custom Format' properly

* Updating to key:value pairs

* Update template
2024-04-03 11:53:36 -04:00
Avesta
33b9574d04
Update Tar.yml (#310)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2024-03-31 14:00:57 +01:00
Axel Boesenach
3aa721515b
Fix typo in /z command parameter (#360) 2024-03-23 11:13:30 +00:00
j00c3
23bf33c7c4
Update MITRE T1185 to T1105 (#345) 2024-02-17 17:30:52 +00:00
Bjarne
ce53e1376a
Moved text to correct line (#349)
Moved "and show response in terminal" from `Command` to `Description`
2024-02-17 17:14:08 +00:00
Lino
bba87a6c2a
TypoFix: Addinutil.yml (#342)
Small typo fix:
serliaized -> serialized
2024-02-13 13:37:40 +00:00
Wietze
80267d91dd
Adding GitHub Actions workflow test for duplicate filenames (#340)
* Adding GitHub Actions workflow test for duplicate filenames

* Adding generic error message

* Deduping fsutil.exe and teams.exe
2023-11-07 20:55:24 -05:00
Grzegorz Tworek
5b4d6d604c
Create Fsutil.yml (#339) 2023-11-06 15:01:59 +01:00
pfiatde
ee78111254
Update Msiexec.yml (#333)
* Update Msiexec.yml

Added transform file execution

* Update Msiexec.yml
2023-11-06 13:47:04 +01:00
Wietze
760151b598
Fixing yml files with .yaml extension (#338) 2023-10-19 17:17:15 +01:00