SigmaHQ/rules/windows
Jonhnathan 345c3c6451
Fix
2020-10-15 20:24:31 -03:00
..
builtin Update win_dcsync.yml 2020-10-15 20:19:06 -03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-10-15 15:57:05 -03:00
file_event Update sysmon_tsclient_filewrite_startup.yml 2020-10-15 16:02:52 -03:00
image_load Update sysmon_svchost_dll_search_order_hijack.yml 2020-10-15 16:10:23 -03:00
malware Fix 2020-10-15 20:24:31 -03:00
network_connection Update sysmon_win_binary_susp_com.yml 2020-10-15 16:27:01 -03:00
other Update win_wmi_persistence.yml 2020-10-15 17:08:15 -03:00
powershell Update powershell_winlogon_helper_dll.yml 2020-10-15 17:15:23 -03:00
process_access Update sysmon_malware_verclsid_shellcode.yml 2020-10-15 17:19:06 -03:00
process_creation Update win_workflow_compiler.yml 2020-10-15 20:00:57 -03:00
registry_event Update sysmon_win_reg_persistence.yml 2020-10-15 20:11:52 -03:00
sysmon Update sysmon_wmi_susp_scripting.yml 2020-10-15 20:15:22 -03:00