Letsdefend.io SOC163 — Suspicious Certutil.exe Usage (Event Id:113)
Tags
attack-pattern: Python - T1059.006
Common Information
Type Value
UUID 4d8a3695-d623-450c-b220-c17d23287582
Fingerprint d44cee77157ff19a
Analysis status DONE
Considered CTI value 0
Text language
Published July 31, 2023, 3:35 p.m.
Added to db July 31, 2023, 6 p.m.
Last updated Nov. 17, 2024, 6:55 p.m.
Headline Letsdefend.io SOC163 — Suspicious Certutil.exe Usage (Event Id:113)
Title Letsdefend.io SOC163 — Suspicious Certutil.exe Usage (Event Id:113)
Detected Hints/Tags/Attributes 5/1/3
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 167 Cybersecurity on Medium https://medium.com/feed/tag/cybersecurity 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 47
letsdefend.io
Details File 226
certutil.exe
Details IPv4 3
172.16.17.22