Skip to content

Commit 9284ab7

Browse files
committed
interlock
1 parent c38a06e commit 9284ab7

File tree

2 files changed

+14
-0
lines changed

2 files changed

+14
-0
lines changed
Lines changed: 11 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,11 @@
1+
author: Teoderick Contreras, Splunk
2+
id: 76f9a94c-6c63-11f0-89ae-629be3538068
3+
date: '2025-07-29'
4+
description: Generated datasets for rundll32 dll in temp in attack range.
5+
environment: attack_range
6+
dataset:
7+
- https://media.githubusercontent.com/media/splunk/attack_data/master/datasets/attack_techniques/T1218.011/rundll32_dll_in_temp/rundll32_tmp.log
8+
sourcetypes:
9+
- 'XmlWinEventLog:Microsoft-Windows-Sysmon/Operational'
10+
references:
11+
- https://blog.sekoia.io/interlock-ransomware-evolving-under-the-radar/
Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,3 @@
1+
version https://git-lfs.github.com/spec/v1
2+
oid sha256:5ac4747551f733d673cd6828a55732b7b542d3552698325cbdac2df2a69aa62f
3+
size 4057

0 commit comments

Comments
 (0)