SigmaHQ/rules/windows/malware
2019-02-03 00:24:57 +01:00
..
av_exploiting.yml Rule: updated relevant AV signatures - exploiting 2019-01-16 18:43:28 +01:00
av_password_dumper.yml ATT&CK tagging QA 2018-09-20 12:44:44 +02:00
av_relevant_files.yml Escaped '\*' to '\\*' where required 2019-02-03 00:24:57 +01:00
av_webshell.yml ATT&CK tagging QA 2018-09-20 12:44:44 +02:00
sysmon_malware_dridex.yml Escaped '\*' to '\\*' where required 2019-02-03 00:24:57 +01:00
sysmon_malware_notpetya.yml Escaped '\*' to '\\*' where required 2019-02-03 00:24:57 +01:00
sysmon_malware_wannacry.yml Simplified rule conditions with new condition constructs 2018-03-06 23:14:43 +01:00
win_mal_adwind.yml Escaped '\*' to '\\*' where required 2019-02-03 00:24:57 +01:00
win_mal_wannacry.yml Replace "logsource: description" with "definition" to match the specs 2018-11-15 09:00:06 +03:00