Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
332f7d27da3d665ff33578775b2bec7bbb65a589
blue-team-tools/rules/windows
T
History
Florian Roth 332f7d27da Win WMI Persistence
http://blog.trendmicro.com/trendlabs-security-intelligence/cryptocurrency-miner-uses-wmi-eternalblue-spread-filelessly/
https://twitter.com/mattifestation/status/899646620148539397
2017-08-22 10:02:54 +02:00
..
builtin
Service install - net user persistence
2017-08-16 15:16:57 +02:00
malware
Updated Petya rule
2017-06-28 12:52:58 +02:00
other
Win WMI Persistence
2017-08-22 10:02:54 +02:00
powershell
Fixed parse errors
2017-08-02 22:49:15 +02:00
sysmon
Added regsvr32.exe to suspicious child processes
2017-08-20 23:14:41 +02:00
Powered by Gitea Version: 1.26.1 Page: 101ms Template: 6ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API