SigmaHQ/rules/windows
2020-03-24 19:59:54 +01:00
..
builtin Add correct Source to detection to avoid FP 2020-03-24 19:49:24 +01:00
deprecated Merge branch 'master' into oscd 2020-02-03 23:13:16 +01:00
malware Merge pull request #492 from booberry46/master 2020-01-30 14:27:30 +01:00
other Merge pull request #604 from Neo23x0/devel 2020-01-31 07:07:13 +01:00
powershell docs: more false positive conditions 2020-02-25 11:13:58 +01:00
process_creation Change falsepositives to array 2020-03-24 19:59:54 +01:00
sysmon Add WinPrvSE.exe to detection 2020-03-24 19:47:10 +01:00