Code | Technique | Mitre |
---|---|---|
PE-001 | Winlogon Helper DLL | T1004 |
PE-002 | Port Monitors | T1013 |
PE-003 | Accessibility Features | T1015 |
PE-004 | Shortcut Modification | T1023 |
PE-005 | Modify Existing Service | T1031 |
PE-006 | DLL Search Order Hijacking | T1038 |
PE-007 | Change Default File Association | T1042 |
PE-008 | New Service | T1050 |
PE-009 | Scheduled Tasks | T1053 |
PE-010 | Service Registry Permission Weakness | T1058 |
PE-011 | Registry Run Keys | T1060 |
PE-012 | WMI Event Subscription | T1084 |
PE-013 | Security Support Provider | T1101 |
PE-014 | AppInit DLLs | T1103 |
PE-015 | Component Object Model Hijacking | T1122 |
PE-016 | Netsh Helper DLL | T1128 |
PE-017 | Office Application Startup | T1137 |
PE-018 | Application Shimming | T1138 |
PE-019 | Screensaver | T1180 |
PE-020 | Image File Execution Options Injection | T1183 |
PE-021 | BITS Jobs | T1197 |
PE-022 | Time Providers | T1209 |
PE-023 | PowerShell Profile | T1504 |
PE-024 | Waitfor | N/A |
PE-025 | RID Hijacking | N/A |
PE-026 | AMSI | N/A |
PE-027 | Print Spooler | N/A |
PE-028 | Certificates | N/A |
PE-029 | DLL Proxy Loading | N/A |