Files
blue-team-tools/rules/windows/process_creation
webboy2015 87df79302d Update win_lolbas_execution_of_nltest.exe
Changed condition as follows:
   detection:
       selection:
          EventID: 4689
          ProcessName|endswith: nltest.exe
          Status: "0x0"
     condition: selection

Included  field - SubjectDomainName
2021-10-01 12:55:37 -07:00
..
2021-08-07 15:54:43 +02:00
2021-08-06 18:45:38 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-09-03 06:50:00 +02:00
2021-09-08 20:14:49 +02:00
2021-09-07 17:45:41 +02:00
2021-07-01 12:18:30 +05:45
2020-12-08 10:15:30 +01:00
2021-08-25 09:15:57 +02:00
2021-08-25 09:15:57 +02:00
2021-07-01 12:18:30 +05:45
2021-07-31 10:18:21 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-09-22 18:45:08 +02:00
2021-09-22 18:45:08 +02:00
2021-09-22 16:21:07 +02:00
2021-07-01 12:18:30 +05:45
2021-09-08 20:14:49 +02:00
2021-09-07 17:45:41 +02:00
2021-09-02 09:59:19 +02:00
2021-09-08 20:14:49 +02:00
2021-07-01 12:18:30 +05:45
2021-09-22 16:27:05 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-08-16 15:50:14 +02:00
2021-09-08 20:14:49 +02:00
2021-09-07 23:38:07 +02:00
2021-09-07 23:38:07 +02:00
2021-09-07 23:38:07 +02:00
2021-09-07 23:38:07 +02:00
2021-08-24 12:36:31 +02:00
2021-08-12 13:27:51 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-09-07 17:45:41 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-08-18 18:58:20 +00:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-09-29 08:26:05 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-27 10:34:46 +02:00
2021-09-08 20:14:49 +02:00
2021-07-01 12:18:30 +05:45
2021-09-08 20:14:49 +02:00
2021-09-08 20:14:49 +02:00
2021-07-01 12:18:30 +05:45
2021-09-01 20:01:03 +02:00
2021-07-01 12:18:30 +05:45
2021-07-09 16:41:03 +02:00
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45
2021-07-01 12:18:30 +05:45