Jonhnathan
|
3410a1eece
|
Update win_malware_formbook.yml
|
2020-11-27 15:26:15 -03:00 |
|
Jonhnathan
|
253c0839ec
|
Update logic
|
2020-11-27 15:25:38 -03:00 |
|
Jonhnathan
|
5f5af0bd36
|
Update win_malware_dridex.yml
|
2020-11-27 15:10:31 -03:00 |
|
Jonhnathan
|
7672db2aeb
|
Update Logic
|
2020-11-27 12:37:04 -03:00 |
|
Jonhnathan
|
22ae395e4a
|
Update win_impacket_lateralization.yml
|
2020-11-27 12:35:27 -03:00 |
|
Jonhnathan
|
e18829697f
|
Update Logic
|
2020-11-27 12:33:31 -03:00 |
|
Jonhnathan
|
9331686368
|
Update Logic
|
2020-11-27 12:27:23 -03:00 |
|
Jonhnathan
|
dbd97647f6
|
Remove Additional backslash and update logic
|
2020-11-27 12:22:04 -03:00 |
|
Jonhnathan
|
421ab4dc5f
|
Update win_exploit_cve_2017_0261.yml
|
2020-11-27 12:18:06 -03:00 |
|
Jonhnathan
|
3f9edf19a9
|
Update win_control_panel_item.yml
|
2020-11-27 12:15:12 -03:00 |
|
Jonhnathan
|
bde2b95cdc
|
Remove Additional backslash
|
2020-11-27 12:14:34 -03:00 |
|
Jonhnathan
|
e58333f808
|
Update win_commandline_path_traversal.yml
|
2020-11-27 12:13:45 -03:00 |
|
Jonhnathan
|
a403082631
|
Update win_bypass_squiblytwo.yml
|
2020-11-26 23:33:00 -03:00 |
|
Jonhnathan
|
d5803b89ef
|
Update win_apt_zxshell.yml
|
2020-11-26 23:31:10 -03:00 |
|
Jonhnathan
|
89a4aa84bf
|
Update win_apt_winnti_pipemon.yml
|
2020-11-26 23:29:10 -03:00 |
|
Jonhnathan
|
df93846117
|
Update win_apt_unidentified_nov_18.yml
|
2020-11-26 23:26:18 -03:00 |
|
Jonhnathan
|
b234d577d6
|
Update win_apt_sofacy.yml
|
2020-11-26 23:21:53 -03:00 |
|
Jonhnathan
|
77bae30bef
|
Update win_apt_slingshot.yml
|
2020-11-26 23:18:32 -03:00 |
|
Jonhnathan
|
f2dd516b7c
|
Fix logic
|
2020-11-26 23:16:03 -03:00 |
|
Jonhnathan
|
127607c5e7
|
Remove Additional backslash
|
2020-11-26 23:14:51 -03:00 |
|
Jonhnathan
|
bce74198ab
|
Remove Additional backslash
|
2020-11-26 23:14:24 -03:00 |
|
Jonhnathan
|
fda266adb6
|
Update win_apt_hurricane_panda.yml
|
2020-11-26 23:12:26 -03:00 |
|
Jonhnathan
|
d0b6694767
|
Update win_apt_greenbug_may20.yml
|
2020-11-26 23:05:44 -03:00 |
|
Jonhnathan
|
707fbe048e
|
Update win_apt_evilnum_jul20.yml
|
2020-11-26 23:05:08 -03:00 |
|
Jonhnathan
|
a113c0f3b4
|
Remove Additional backslash
|
2020-11-26 23:00:05 -03:00 |
|
Jonhnathan
|
d57d7c1e5b
|
Remove Additional backslash
|
2020-11-26 22:59:35 -03:00 |
|
Jonhnathan
|
f61317b2f9
|
Update sysmon_in_memory_assembly_execution.yml
|
2020-11-26 22:50:48 -03:00 |
|
Jonhnathan
|
784cab1dfe
|
Fix missing logic and Field
|
2020-11-26 22:46:17 -03:00 |
|
Jonhnathan
|
48f16a0ca8
|
Update win_susp_net_recon_activity.yml
|
2020-11-26 22:39:49 -03:00 |
|
Jonhnathan
|
31e0cfb13f
|
Update win_susp_covenant.yml
|
2020-11-20 02:36:20 -03:00 |
|
Jonhnathan
|
ec1944e2d7
|
Update win_susp_copy_system32.yml
|
2020-11-20 02:31:26 -03:00 |
|
Jonhnathan
|
5d7131bbf2
|
Update win_susp_compression_params.yml
|
2020-11-20 02:29:41 -03:00 |
|
Jonhnathan
|
32ed588adb
|
Update detection Logic
|
2020-11-20 02:27:58 -03:00 |
|
Jonhnathan
|
b274be8d4e
|
Update detection Logic
|
2020-11-20 02:25:32 -03:00 |
|
Jonhnathan
|
c31c0d981a
|
Update detection logic
|
2020-11-20 02:23:18 -03:00 |
|
Jonhnathan
|
23edcc6dc6
|
Update win_susp_certutil_command.yml
|
2020-11-20 02:21:55 -03:00 |
|
Jonhnathan
|
8af17dda5b
|
Update win_spn_enum.yml
|
2020-11-20 02:17:31 -03:00 |
|
Jonhnathan
|
d5cb4246c2
|
Remove additional backlash
|
2020-11-20 02:16:51 -03:00 |
|
Jonhnathan
|
0606cd3dde
|
Update detection Logic
|
2020-11-20 02:10:27 -03:00 |
|
Jonhnathan
|
ebb4580378
|
Remove additional backlash
|
2020-11-20 02:04:28 -03:00 |
|
Jonhnathan
|
2ba146be07
|
Remove additional backlash
|
2020-11-20 02:03:06 -03:00 |
|
Jonhnathan
|
493fa3d5ee
|
Update sysmon_susp_mic_cam_access.yml
|
2020-11-20 02:02:26 -03:00 |
|
Jonhnathan
|
9e3a612953
|
Remove additional backlash
|
2020-11-20 02:01:43 -03:00 |
|
Jonhnathan
|
6c88dd700e
|
Update sysmon_stickykey_like_backdoor.yml
|
2020-11-20 02:00:53 -03:00 |
|
Jonhnathan
|
1e640b50f9
|
Remove additional backlash
|
2020-11-20 01:58:20 -03:00 |
|
Jonhnathan
|
acff5ef4f9
|
Update sysmon_registry_persistence_key_linking.yml
|
2020-11-20 01:57:34 -03:00 |
|
Jonhnathan
|
e35b09e1a6
|
Remove out of context falsepositive
|
2020-11-20 01:55:48 -03:00 |
|
Jonhnathan
|
d595df2879
|
Fix
|
2020-11-20 01:53:15 -03:00 |
|
Jonhnathan
|
6f3daad053
|
Update sysmon_apt_oceanlotus_registry.yml
|
2020-11-20 01:51:53 -03:00 |
|
Jonhnathan
|
9967bd1fe5
|
Update sysmon_apt_oceanlotus_registry.yml
|
2020-11-20 01:51:01 -03:00 |
|