8372e76e9b
update: Regsvr32 DLL Execution With Suspicious File Extension - add coverage for regsvr executing '.log' extension update: Suspicious Windows Service Tampering - add coverage for Windows service tampering through wmic and PowerShell WMI module