SigmaHQ/rules/windows
yugoslavskiy 2985836e36
Merge pull request #1140 from omkar72/oscd-5
[OSCD] adding shortened commands for Netsh in the existing rule
2021-01-06 00:24:43 +03:00
..
builtin Merge pull request #1229 from zinint/1009-19-1 2021-01-06 00:24:08 +03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Merge pull request #1219 from ryanplasma/rplas-SIGMA-547-page-37 2021-01-06 00:22:57 +03:00
image_load Merge pull request #1139 from omkar72/oscd-4 2021-01-05 23:17:25 +03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Merge pull request #1166 from drdoc/oscd 2021-01-06 00:12:34 +03:00
powershell Merge pull request #1229 from zinint/1009-19-1 2021-01-06 00:24:08 +03:00
process_access Merge pull request #1077 from uchakin/oscd 2021-01-05 23:06:24 +03:00
process_creation Merge pull request #1140 from omkar72/oscd-5 2021-01-06 00:24:43 +03:00
registry_event Merge pull request #1211 from zipa-original/win_persistence_telemetry 2021-01-06 00:20:51 +03:00
sysmon Merge pull request #1179 from SanWieb/OSCD_regedit_3 2021-01-06 00:16:45 +03:00