Commit Graph

6 Commits

Author SHA1 Message Date
wagga40
d6afa46e68 Added missing "modified" fields. Removed trailing wildcard. 2021-06-27 17:36:32 +02:00
wagga40
11df697cdc Updated rules with modifiers instead of '*' and remove trailing '\\' 2021-06-27 14:51:29 +02:00
Jonhnathan
d09dd70695
Update win_susp_userinit_child.yml 2020-10-15 19:51:42 -03:00
Thomas Patzke
0592cbb67a Added UUIDs to rules 2019-11-12 23:12:27 +01:00
Florian Roth
8cc16d252a fix: more FP reductions 2019-11-09 23:36:29 +01:00
Florian Roth
39b5eddfc7 Rule: Suspicious userinit.exe child process 2019-06-23 13:27:06 +02:00