Commit Graph

632 Commits

Author SHA1 Message Date
onatuzunyayla
c65c9545f5 Create testwindowremoteagent.yaml
This one is pretty straightforward and related to the vstest so pushed the commit for this pull request. TestWindowRemoteAgent.exe is a signed DLL that can be utilized to be a gadget for data exfiltration since it tries connection to any host.
2023-08-25 15:49:14 +03:00
Ekitji
59f0c133f8 Add files via upload 2023-08-23 02:50:03 -04:00
Ekitji
cd8066209a Delete Dsdbutil.yml 2023-08-23 08:49:48 +02:00
Ekitji
cb98bdcda7 Update Dsdbutil.yml 2023-08-23 08:28:39 +02:00
Ekitji
205501b02e Update Dsdbutil.yml 2023-08-23 08:27:29 +02:00
Ekitji
cd27c25410 Update Dsdbutil.yml 2023-08-23 08:17:56 +02:00
Ekitji
3b30620d79 Update Dsdbutil.yml 2023-08-23 08:10:06 +02:00
Ekitji
1c2c7e7623 Update Dsdbutil.yml 2023-08-23 08:06:56 +02:00
Ekitji
d21ae223eb trying to fix wrong new line character..... 2023-08-22 18:49:07 +02:00
Ekitji
f513cf6ae7 Update Dsdbutil.yml 2023-08-22 18:47:23 +02:00
Ekitji
f300c94572 Update Dsdbutil.yml 2023-08-22 18:45:29 +02:00
Ekitji
5d11f02c16 Update Dsdbutil.yml 2023-08-22 18:43:43 +02:00
Ekitji
0039be4f73 fixing trailing spaces 2023-08-22 18:35:43 +02:00
Ekitji
c33614c64b fix validation errors?? 2023-08-22 18:33:08 +02:00
Ekitji
be19ab3d53 Update Dsdbutil.yml
fixed linking?? removed extra ---
2023-08-22 18:30:30 +02:00
Mert Daş
f4acc01906 Update msedge_proxy.yml 2023-08-18 17:47:17 +03:00
Mert Daş
68629128a3 Update msedge_proxy.yml 2023-08-18 17:44:23 +03:00
Mert Daş
b14ad21ff9 Create msedge_proxy.yml 2023-08-18 17:17:49 +03:00
Wietze
03c148682a Minor change to trigger CI checks 2023-08-05 19:15:24 +01:00
Ronnie Salomonsen
4ffdf0ec0b Updated msxsl.yml to include a download and ADS category (#276) 2023-08-05 18:04:09 +01:00
Bobby Cooke
fe64c63211 VSDiagnostics Execute lolbin (#309)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-08-05 17:18:48 +01:00
eral4m
e4c2371a26 Adding scrobj.dll, shimgvw.dll INetCache downloader entries (#189)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-08-05 16:50:52 +01:00
Elliot Killick
65007296a6 Update Cmdl32.exe resource links (#317) 2023-08-04 11:21:36 +01:00
Wietze
b50df49ac2 Added colorcpl.exe (#315)
Co-authored-by: Arjan Onwezen <arjan.onwezen@gmail.com>
2023-07-27 18:18:49 +01:00
Grzegorz Tworek
7241a8b7fd Create Provlaunch.yml (#307)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-07-25 16:16:39 +01:00
pfiatde
4453bb1ec4 Add Code.yml (honorable mention) (#278)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-07-18 00:13:04 +01:00
Vikas Singh
fa3f6bbc0c Update Dxcap.yml (#296)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-06-27 13:42:47 +01:00
Ryan Plas
62ed936a39 Add missing document starts and add yamllint rule (#305) 2023-06-23 20:55:39 +01:00
frack113
e8ea28d4e9 Update SigmaHQ ref (#301)
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
2023-06-19 22:40:24 +01:00
CyberSorcery
c3f2690633 Tar.exe lateral movement (#277)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-06-17 22:25:34 +01:00
C-h4ck-0
8aca00a56b Update ProtocolHandler.yml (#267)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-06-17 22:18:06 +01:00
Black Shade
d71415de77 Create msedgewebview2.exe (#299)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-06-17 21:56:16 +01:00
frack113
b52200eb89 Add sigma and remove ampty string (#297)
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
2023-06-17 20:30:00 +01:00
frack113
e08b10f437 Fix sigmaHQ ref (#300)
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
2023-06-17 20:29:07 +01:00
Jose Enrique Hernandez
f5a3812c91 Merge pull request #295 from frack113/sigma_20230610
Add missing Sigma ref
2023-06-11 22:10:04 -04:00
frack113
55b7556b64 Add Sigma ref
Signed-off-by: frack113 <62423083+frack113@users.noreply.github.com>
2023-06-10 08:12:12 +02:00
Ekitji
3eb7625da4 Update Dsdbutil.yml 2023-06-08 01:07:25 +03:00
Ekitji
1a3ada3984 Update Dsdbutil.yml 2023-06-08 01:02:51 +03:00
Ekitji
3556f254b2 dsdbutil.exe
LOLBIN for dumping NTDS
2023-05-31 16:52:51 +02:00
mr.d0x
ef8048344d Update msedge.exe & add teams.exe 2023-05-27 12:11:05 -04:00
biscoito
1f7e8a3e57 Remove unnecessary "at" on command (#286) 2023-05-01 23:36:38 +01:00
mrd0x
787c87470e Several LOLBINs additions & modifications (#192)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-03-31 13:46:21 +01:00
Wietze
a9046ecb85 Fixing newline in odbcconf entry 2023-03-25 16:21:34 +00:00
Wietze
06f33c91ae Updating odbcconf, fixes #282 - thanks @hexacorn (#283) 2023-03-25 16:14:04 +00:00
Mr. 0range
2b7fdcac03 Adding WebDav techniques to cmd.exe entry (#273)
Added the documentation for the type command file transfer, ADS, and copy functionality
---------

Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-03-08 14:39:32 +00:00
YamAlon
8283b4b7e3 Added fsi to dotnet.exe (#281)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-02-25 20:10:45 +00:00
Wietze
74d010a893 Removing pre-Windows 10 OSs from CertReq entry, fixes #247 2023-02-25 19:19:22 +00:00
bohops
cd16f0aff3 Add vsls-agent lolbin and committing a few other changes (#263)
Co-authored-by: Wietze <wietze@users.noreply.github.com>
2023-02-25 18:47:44 +00:00
febou92
ded90467a8 Create Ssh.yml (#211)
* Create Ssh.yml

* newline ymlint

Co-authored-by: bohops <bohops>
2022-12-29 19:45:09 -05:00
frack113
1072d3dc34 Add sigma ref Detection (#272)
* Add sigma ref

* Add missing sigma ref

* Fix sigma link

* Remove by Defender

* Remove by Defender
2022-12-29 09:51:15 -05:00