We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 66cfe42 commit 6d01c3fCopy full SHA for 6d01c3f
2 files changed
datasets/attack_techniques/T1218.011/random_dll_extensions/random_dll_extensions.yml
@@ -0,0 +1,13 @@
1
+author: Teoderick Contreras, Splunk
2
+id: 935146dc-29c7-11f1-a458-629be353806a
3
+date: '2026-03-27'
4
+description: Generated datasets for random dll extensions in attack range.
5
+environment: attack_range
6
+directory: rundll32_random_dll_extensions
7
+mitre_technique:
8
+- T1218.011
9
+datasets:
10
+- name: rundll32_non_dll.log
11
+ path: /datasets/attack_techniques/T1218.011/random_dll_extensions/rundll32_non_dll.log
12
+ sourcetype: 'XmlWinEventLog'
13
+ source: 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
datasets/attack_techniques/T1218.011/random_dll_extensions/rundll32_non_dll.log
@@ -0,0 +1,3 @@
+version https://git-lfs.github.com/spec/v1
+oid sha256:b5668b9465719f4b748f7a943b1e3c3328d7b4710be98927c830a10fdc659024
+size 6063
0 commit comments