SigmaHQ/rules/windows
2020-11-26 23:00:05 -03:00
..
builtin Update win_susp_net_recon_activity.yml 2020-11-26 22:39:49 -03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Remove additional backslash 2020-11-19 23:04:26 -03:00
image_load Remove additional backslash 2020-11-19 23:09:50 -03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Update win_wmi_persistence.yml 2020-11-20 00:58:49 -03:00
powershell Fix missing logic and Field 2020-11-26 22:46:17 -03:00
process_access Update sysmon_in_memory_assembly_execution.yml 2020-11-26 22:50:48 -03:00
process_creation Remove Additional backslash 2020-11-26 23:00:05 -03:00
registry_event Remove additional backlash 2020-11-20 02:03:06 -03:00
sysmon Update detection Logic 2020-11-20 02:10:27 -03:00