SigmaHQ/rules/windows
yugoslavskiy a82c559816
Merge pull request #1130 from vburov/patch-13
[OSCD] Create powershell_cmdline_specific_encoded_methods.yml
2021-01-05 23:16:24 +03:00
..
builtin Merge pull request #1114 from NikitaStormwind/regular29(3) 2021-01-05 23:13:48 +03:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
driver_load Update sysmon_susp_driver_load.yml 2020-11-19 22:56:34 -03:00
file_event Remove additional backslash 2020-11-19 23:04:26 -03:00
image_load Merge pull request #1076 from nsaddler/oscd5 2021-01-05 23:06:37 +03:00
malware Remove additional backslash 2020-11-19 23:15:38 -03:00
network_connection Remove additional backslash 2020-11-20 00:53:13 -03:00
other Update win_wmi_persistence.yml 2020-11-20 00:58:49 -03:00
powershell Merge pull request #1130 from vburov/patch-13 2021-01-05 23:16:24 +03:00
process_access Merge pull request #1077 from uchakin/oscd 2021-01-05 23:06:24 +03:00
process_creation Merge pull request #1081 from cy1337/patch-1 2021-01-05 23:16:14 +03:00
registry_event Merge pull request #1106 from stvetro/2020 2021-01-05 23:13:03 +03:00
sysmon Merge pull request #1126 from skirankumar/master 2021-01-05 23:14:20 +03:00