SigmaHQ/rules/windows
Thomas Patzke a5579fa8cd
Merge pull request #513 from Karneades/fix-sysmon-rule
fix: bound sysmon logon script rule to field
2019-11-02 23:04:35 +01:00
..
builtin fix: bound windows event log rules to message field 2019-11-02 11:25:29 +01:00
malware rules: AV rules updated to reflect 1.7.2 auf AV cheat sheet 2019-10-04 16:17:34 +02:00
other fix: bound keywords to field in WMI persistence rule 2019-10-29 19:22:41 +01:00
powershell Merge pull request #508 from Karneades/fixRule3 2019-10-29 22:34:08 +01:00
process_creation rule: Formbook rule improved 2019-10-31 09:32:18 +01:00
sysmon fix: bound sysmon logon script rule to field 2019-11-02 11:47:20 +01:00