SigmaHQ/windows/builtin
2017-01-11 20:44:36 +01:00
..
alert_mimikatz_keywords.yml Remove implicit selection number, first Sysmon example 2017-01-10 15:05:19 +01:00
av_relevant_match.yml Remove implicit selection number, first Sysmon example 2017-01-10 15:05:19 +01:00
susp_eventlog_cleared.yml Fixed single quote balance 2017-01-11 20:44:36 +01:00
susp_failed_logon_reasons.yml Remove implicit selection number, first Sysmon example 2017-01-10 15:05:19 +01:00
susp_failed_logons_single_source.yml Simplification of aggregation comparison expression 2017-01-11 20:43:34 +01:00