Skip to content

Commit

Permalink
Merge pull request #806 from kmdivi/main
Browse files Browse the repository at this point in the history
Fix typo
  • Loading branch information
YamatoSecurity authored Jan 11, 2025
2 parents 994affa + 79861a0 commit e538005
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 2 deletions.
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@ author: Zach Mathis
date: 2022/04/18
modified: 2022/12/16

title: NewInteractive Logon (Suspicous Process)
title: NewInteractive Logon (Suspicious Process)
description: Tries to detect token impersonation by tools like Cobalt Strike.

id: 9e8b6cdb-9991-488b-a7b3-2eec7aa64679
Expand Down
Original file line number Diff line number Diff line change
Expand Up @@ -2,7 +2,7 @@ author: Zach Mathis
date: 2022/02/06
modified: 2024/10/01

title: 'Suspicous Service Name'
title: 'Suspicious Service Name'
details: 'Svc: %ServiceName% ¦ Path: %ImagePath% ¦ Acct: %AccountName% ¦ StartType: %StartType%'
description: Tries to look for random-looking service names that are often used by malware for persistence.

Expand Down

0 comments on commit e538005

Please sign in to comment.