Commit Graph

15 Commits

Author SHA1 Message Date
Thomas Patzke
90efe974b8 Fixes and improvements 2021-04-03 00:08:55 +02:00
yugoslavskiy
efc3f298b8
simplify syntax 2020-11-04 23:03:34 +01:00
GlebSukhodolskiy
8068487340
test trigger 2020-11-03 12:04:03 +03:00
GlebSukhodolskiy
544876951f
fixed duplication v2 2020-11-03 02:34:34 +03:00
GlebSukhodolskiy
48e46c279a
fixed duplication 2020-11-03 02:25:22 +03:00
GlebSukhodolskiy
cf8c721662
fixed optimization and references 2020-11-03 02:16:13 +03:00
GlebSukhodolskiy
e2c4af012b
Changed to Placeholders Usage
A query was too big to pass a test, so I changed logic to placeholders usage.
2020-11-03 00:56:42 +03:00
GlebSukhodolskiy
9a9c189de7
Removed Duplicated Keys 2020-10-15 19:26:38 +03:00
GlebSukhodolskiy
dd712b0c0e
Updated Reference and Detection 2020-10-15 12:35:14 +03:00
GlebSukhodolskiy
1824259ebf
Added New Registry Keys
Issue #576
2020-10-13 21:03:06 +03:00
Alexey Lednyov
7834fdd750 att&ck tags review: windows/registry_event 2020-09-06 22:10:44 +03:00
ecco
de4810233c remove false positives in Windows being too broad and add specific keys looked at + add keys from wow64 2020-08-18 05:28:37 -04:00
Florian Roth
3decee07ba fix: bugfix and cosmetics 2020-06-24 18:10:58 +02:00
Florian Roth
f3fedef8f5 Changed category names and remove sysmon log source 2020-06-24 17:41:21 +02:00
Steven Goossens
e5f36dd146 Added rules files split into folders 2020-06-10 16:32:30 +02:00