SigmaHQ/rules/windows
2020-11-20 01:42:17 -03:00
..
builtin Fix Reference 2020-11-19 22:50:27 -03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Remove additional backslash 2020-11-19 23:04:26 -03:00
image_load Remove additional backslash 2020-11-19 23:09:50 -03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Update win_wmi_persistence.yml 2020-11-20 00:58:49 -03:00
powershell Improve Logic 2020-11-20 01:22:20 -03:00
process_access Update sysmon_malware_verclsid_shellcode.yml 2020-11-20 01:34:43 -03:00
process_creation Update win_apt_chafer_mar18.yml 2020-10-27 23:28:04 -03:00
registry_event Update sysmon_uac_bypass_sdclt.yml 2020-11-20 01:42:17 -03:00
sysmon Update sysmon_wmi_susp_scripting.yml 2020-10-15 20:15:22 -03:00