SigmaHQ/rules/windows
2021-04-29 09:56:26 +02:00
..
builtin Merge pull request #1030 from stevengoossensB/master 2021-04-23 16:52:25 +02:00
create_remote_thread Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00
create_stream_hash Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
dns_query - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
driver_load Fixes and improvements 2021-04-03 00:08:55 +02:00
file_delete Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
file_event Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
image_load Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
malware Clean rule rules/windows/malware/win_mal_octopus_scanner.yml to use category 2021-04-15 02:30:41 +02:00
network_connection Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
other Merge branch 'oscd' 2021-03-02 22:58:41 +03:00
pipe_created rules: CobaltStrike named pipes 2021-04-23 17:16:09 +02:00
powershell Merge pull request #1436 from SigmaHQ/rule-devel 2021-04-23 17:33:07 +02:00
process_access Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
process_creation rule: PowerShell Cmdlet Defender Exclusions 2021-04-29 09:56:26 +02:00
raw_access_thread - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
registry_event feat: generic registry events compatible with native audit logging 2021-04-26 09:31:36 +02:00
sysmon Merge pull request #1030 from stevengoossensB/master 2021-04-23 16:52:25 +02:00
wmi_event Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00