SigmaHQ/rules/windows
darkquasar 87994ca46b
adding MPreter as McAfee classifies it
McAfee classifies some Meterpreter events with the "Mpreter" keyword
2019-02-22 15:22:10 +11:00
..
builtin Fixing yara condition 2019-02-20 10:57:24 -05:00
malware adding MPreter as McAfee classifies it 2019-02-22 15:22:10 +11:00
other Rule: WMI Persistence - FPs 2019-02-05 14:35:23 +01:00
powershell Rule: Suspicious PowerShell keywords 2019-02-11 13:02:38 +01:00
sysmon Rule: suspicious pipes extended 2019-02-21 13:26:48 +01:00