Skip to content

Commit

Permalink
Create cryptnet.yml
Browse files Browse the repository at this point in the history
  • Loading branch information
wsummerhill authored Nov 22, 2024
1 parent 065594b commit 9d20e06
Showing 1 changed file with 24 additions and 0 deletions.
24 changes: 24 additions & 0 deletions yml/microsoft/built-in/cryptnet.yml
Original file line number Diff line number Diff line change
@@ -0,0 +1,24 @@
---
Name: cryptnet.dll
Author: Will Summerhill
Created: 2024-11-22
Vendor: Microsoft
ExpectedLocations:
- '%SYSTEM32%'
- '%SYSWOW64%'
ExpectedSignatureInformation:
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
Type: Catalog
VulnerableExecutables:
- Path: 'C:\Program Files\Microsoft Deployment Toolkit\Bin\Microsoft.BDD.Catalog35.exe'
Type: Sideloading
ExpectedSignatureInformation:
- Subject: CN=Microsoft Windows, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
Issuer: CN=Microsoft Windows Production PCA 2011, O=Microsoft Corporation, L=Redmond, S=Washington, C=US
Type: Catalog
Resources:
- https://x.com/BSummerz/status/1860045985919205645
Acknowledgements:
- Name: Will Summerhill
Twitter: '@BSummerz'

0 comments on commit 9d20e06

Please sign in to comment.