diff --git a/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml b/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml index da6f16c2b..a2d56bc83 100644 --- a/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml +++ b/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml @@ -1,4 +1,5 @@ title: Silenttrinity Stager Communication To C2 +id: c4f2d4b1-ca0f-42e4-9b7b-a69790524fab description: Detects a possible remote connections to Silenttrinity c2 references: - https://www.blackhillsinfosec.com/my-first-joyride-with-silenttrinity/