From fbf5d2fdc4476c11586ff3269094c70d87f0501b Mon Sep 17 00:00:00 2001 From: "S.kiran kumar" Date: Sun, 11 Oct 2020 23:07:41 +0530 Subject: [PATCH] Update silenttrinity_stager_communicating_to_c2.yml --- .../windows/sysmon/silenttrinity_stager_communicating_to_c2.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml b/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml index da6f16c2b..a2d56bc83 100644 --- a/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml +++ b/rules/windows/sysmon/silenttrinity_stager_communicating_to_c2.yml @@ -1,4 +1,5 @@ title: Silenttrinity Stager Communication To C2 +id: c4f2d4b1-ca0f-42e4-9b7b-a69790524fab description: Detects a possible remote connections to Silenttrinity c2 references: - https://www.blackhillsinfosec.com/my-first-joyride-with-silenttrinity/