Skip to content

DET0766 Detection of Project File Infection

Item Value
ID DET0766
Version 1.0
Created 21 October 2025
Last Modified 21 October 2025

Technique Detected: T0873 (Project File Infection)

Analytics

ICS

AN1898

Monitor for unexpected changes to project files, although if the malicious modification occurs in tandem with legitimate changes it will be difficult to isolate the unintended changes by analyzing only file systems modifications.

Log Sources
Data Component Name Channel
File Modification (DC0061) File None
Mutable Elements
Field Description