Thomas Patzke
|
90efe974b8
|
Fixes and improvements
|
2021-04-03 00:08:55 +02:00 |
|
yugoslavskiy
|
efc3f298b8
|
simplify syntax
|
2020-11-04 23:03:34 +01:00 |
|
GlebSukhodolskiy
|
8068487340
|
test trigger
|
2020-11-03 12:04:03 +03:00 |
|
GlebSukhodolskiy
|
544876951f
|
fixed duplication v2
|
2020-11-03 02:34:34 +03:00 |
|
GlebSukhodolskiy
|
48e46c279a
|
fixed duplication
|
2020-11-03 02:25:22 +03:00 |
|
GlebSukhodolskiy
|
cf8c721662
|
fixed optimization and references
|
2020-11-03 02:16:13 +03:00 |
|
GlebSukhodolskiy
|
e2c4af012b
|
Changed to Placeholders Usage
A query was too big to pass a test, so I changed logic to placeholders usage.
|
2020-11-03 00:56:42 +03:00 |
|
GlebSukhodolskiy
|
9a9c189de7
|
Removed Duplicated Keys
|
2020-10-15 19:26:38 +03:00 |
|
GlebSukhodolskiy
|
dd712b0c0e
|
Updated Reference and Detection
|
2020-10-15 12:35:14 +03:00 |
|
GlebSukhodolskiy
|
1824259ebf
|
Added New Registry Keys
Issue #576
|
2020-10-13 21:03:06 +03:00 |
|
Alexey Lednyov
|
7834fdd750
|
att&ck tags review: windows/registry_event
|
2020-09-06 22:10:44 +03:00 |
|
ecco
|
de4810233c
|
remove false positives in Windows being too broad and add specific keys looked at + add keys from wow64
|
2020-08-18 05:28:37 -04:00 |
|
Florian Roth
|
3decee07ba
|
fix: bugfix and cosmetics
|
2020-06-24 18:10:58 +02:00 |
|
Florian Roth
|
f3fedef8f5
|
Changed category names and remove sysmon log source
|
2020-06-24 17:41:21 +02:00 |
|
Steven Goossens
|
e5f36dd146
|
Added rules files split into folders
|
2020-06-10 16:32:30 +02:00 |
|