TryHackMe Sysinternals Write-Up
Tags
attack-pattern: | Powershell - T1059.001 Tool - T1588.002 Whois - T1596.002 Powershell - T1086 |
Common Information
Type | Value |
---|---|
UUID | 2d04e7f5-f4ec-4c8c-9547-5ffb04bfa67b |
Fingerprint | 709bb95931a52ef2 |
Analysis status | DONE |
Considered CTI value | -2 |
Text language | |
Published | July 15, 2023, 9:15 a.m. |
Added to db | July 15, 2023, 11:30 a.m. |
Last updated | Nov. 17, 2024, 6:30 p.m. |
Headline | TryHackMe Sysinternals Write-Up |
Title | TryHackMe Sysinternals Write-Up |
Detected Hints/Tags/Attributes | 24/1/13 |
Source URLs
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 167 | ✔ | Cybersecurity on Medium | https://medium.com/feed/tag/cybersecurity | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 11 | live.sysinternals.com |
|
Details | Domain | 1 | sysinternalsuite.zip |
|
Details | Domain | 4 | www.whois.com |
|
Details | File | 12 | live.sys |
|
Details | File | 55 | control.exe |
|
Details | File | 79 | file.txt |
|
Details | File | 1 | sysinternalsuite.zip |
|
Details | File | 16 | ads.txt |
|
Details | File | 117 | taskmgr.exe |
|
Details | File | 1 | c:\tools\sysint\procexp.exe |
|
Details | File | 1 | zoomit.exe |
|
Details | Pdb | 1 | c:\agent\_work\112\s\win32\release\zoomit.pdb |
|
Details | Url | 1 | https://www.whois.com |