Further reading
To learn more about the topics in this chapter, see the following:
- Elastic detection rules: https://github.com/elastic/detection-rules
- Building block rules: https://www.elastic.co/guide/en/security/7.12/building-block-rule.html
- Tesla Agent: https://malpedia.caad.fkie.fraunhofer.de/details/win.agent_tesla
- Schtasks.exe: https://docs.microsoft.com/en-us/windows/win32/taskschd/schtasks
- attrib: https://docs.microsoft.com/en-us/windows-server/administration/windows-commands/attrib