Swachchhanda Shrawan Poudel
3e9318e23f
Merge PR #5763 from @swachchhanda000 - Update ClickFix/FileFix related rules
...
removed: FileFix - Suspicious Child Process from Browser File Upload Abuse - Deprecated in favor of b5b29e4e-31fa-4fdf-b058-296e7a1aa0c2
new: DNS Query by Finger Utility
new: Network Connection Initiated via Finger.EXE
fix: Suspicious Explorer Process with Whitespace Padding - ClickFix/FileFix - Fix selection to use ParentImage instead of Image field
new: Suspicious FileFix Execution Pattern
update: FileFix - Command Evidence in TypedPaths - Added more markers
update: Potential ClickFix Execution Pattern - Registry - Add 2 new strings, "finger" and "identification"
chore: Update "test_rules.py" filename test with better output formatting
---------
Co-authored-by: phantinuss <79651203+phantinuss@users.noreply.github.com >
Co-authored-by: nasbench <monsteroffire2@gmail.com >
2025-11-27 23:00:25 +01:00
..
2023-05-05 17:52:47 +02:00
2023-12-21 21:04:18 +01:00
2024-11-25 09:30:14 +01:00
2023-12-21 21:04:18 +01:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2025-11-13 14:22:02 +01:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2024-07-22 18:53:48 +02:00
2024-07-22 18:53:48 +02:00
2024-03-11 16:58:55 +01:00
2023-04-23 15:42:01 +02:00
2023-09-07 11:42:15 +02:00
2023-04-23 15:42:01 +02:00
2025-07-29 10:30:55 +02:00
2024-07-31 10:16:56 +02:00
2023-06-01 23:22:35 +02:00
2025-10-17 07:57:13 +05:45
2025-11-10 13:52:54 +01:00
2023-04-23 15:42:01 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2023-04-23 15:42:01 +02:00
2024-03-06 17:33:49 +01:00
2024-02-12 12:29:36 +01:00
2024-03-11 16:58:55 +01:00
2023-08-07 16:09:21 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-08-17 19:26:21 +02:00
2023-08-17 19:26:21 +02:00
2024-01-29 13:37:20 +01:00
2023-12-21 21:04:18 +01:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2025-05-20 23:12:55 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-04 14:23:08 +09:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-04 01:14:15 +01:00
2024-08-10 01:23:58 +02:00
2023-12-04 01:14:15 +01:00
2024-09-13 11:14:11 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-11-25 09:30:14 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-11-13 14:22:02 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-11-27 23:00:25 +01:00
2023-04-23 15:42:01 +02:00
2025-03-16 03:09:53 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-11-15 15:35:43 +01:00
2023-07-13 10:01:05 +02:00
2023-04-24 19:24:19 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-02 23:17:57 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-23 14:08:56 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-07-28 13:32:57 +02:00
2023-04-23 15:42:01 +02:00
2025-10-20 09:08:28 +05:45
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-26 15:59:30 +02:00
2024-11-25 09:30:14 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-08-16 12:37:51 +02:00
2024-02-26 11:37:37 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-06-21 09:52:43 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-09-07 11:42:15 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-10-20 09:08:28 +05:45
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-02-26 17:09:30 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-08-17 08:57:52 +02:00
2023-08-17 08:57:52 +02:00
2025-11-13 14:22:02 +01:00
2023-08-17 08:57:52 +02:00
2024-03-26 13:28:49 +01:00
2025-11-13 14:22:02 +01:00
2024-09-02 19:03:46 +02:00
2024-09-02 19:03:46 +02:00
2023-08-17 08:57:52 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-06-26 10:10:04 +01:00
2025-03-16 03:09:53 +01:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2023-05-02 23:17:57 +02:00
2023-04-23 15:42:01 +02:00
2025-01-31 18:08:59 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2024-01-29 13:37:20 +01:00