SigmaHQ/rules/windows
yugoslavskiy 4c8e0b201d
Merge pull request #1162 from uncleAntik/131
[OSCD] LOLBin sqltoolsps.exe #131
2021-01-06 00:11:33 +03:00
..
builtin Merge pull request #1151 from zinint/1009-27-2 2021-01-06 00:10:55 +03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Merge pull request #1141 from omkar72/oscd-6 2021-01-05 23:22:36 +03:00
image_load Merge pull request #1139 from omkar72/oscd-4 2021-01-05 23:17:25 +03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Update win_wmi_persistence.yml 2020-11-20 00:58:49 -03:00
powershell Merge pull request #1157 from invrep-de/oscd 2021-01-06 00:11:24 +03:00
process_access Merge pull request #1077 from uchakin/oscd 2021-01-05 23:06:24 +03:00
process_creation Merge pull request #1162 from uncleAntik/131 2021-01-06 00:11:33 +03:00
registry_event Merge pull request #1155 from sn0w0tter/oscd2 2021-01-06 00:11:13 +03:00
sysmon Merge pull request #1126 from skirankumar/master 2021-01-05 23:14:20 +03:00