SigmaHQ/rules/windows
Roberto Rodriguez 6dc36c8749 Update win_eventlog_cleared.yml
Experimental Rule is a duplicate of bfc7012043/rules/windows/builtin/win_susp_eventlog_cleared.yml. I renamed it experimental just in case. I believe one of them should be removed. I caught it while transforming every rule to elastalert format
2018-12-05 05:40:00 +03:00
..
builtin Update win_eventlog_cleared.yml 2018-12-05 05:40:00 +03:00
malware Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00
other Tagged windows powershell, other and malware rules. 2018-07-24 10:56:41 +02:00
powershell Merge branch 'master' of https://github.com/SherifEldeeb/sigma into SherifEldeeb-master 2018-12-04 23:35:23 +01:00
sysmon Merge branch 'master' of https://github.com/SherifEldeeb/sigma into SherifEldeeb-master 2018-12-04 23:35:23 +01:00