SigmaHQ/rules/windows
Florian Roth 514bd8657b
Merge pull request #704 from Iveco/master
Detect Ghost-In-The-Logs (disabling/bypassing ETW)
2020-04-14 14:11:27 +02:00
..
builtin Merge pull request #704 from Iveco/master 2020-04-14 14:11:27 +02:00
deprecated Merge branch 'master' into oscd 2020-02-03 23:13:16 +01:00
malware Merge pull request #492 from booberry46/master 2020-01-30 14:27:30 +01:00
other fix: converted CRLF line break to LF 2020-03-25 14:36:34 +01:00
powershell Adjusted level 2020-04-14 13:37:10 +02:00
process_creation Replace reference link for win_susp_netsh_dll_persistence 2020-04-10 01:05:10 -05:00
sysmon Merge pull request #704 from Iveco/master 2020-04-14 14:11:27 +02:00