SigmaHQ/rules/windows/powershell
2017-03-13 09:23:08 +01:00
..
powershell_exe_calling_ps.yml PowerShell Rules Revision 2017-03-05 14:14:31 +01:00
powershell_malicious_commandlets.yml Update powershell_malicious_commandlets.yml 2017-03-04 20:26:39 -05:00
powershell_malicious_keywords.yml First PowerShell Ruleset 2017-03-05 01:47:25 +01:00
powershell_psattack.yml PowerShell Rules Revision 2017-03-05 14:14:31 +01:00
powershell_suspicious_download.yml More PowerShell rules 2017-03-05 15:01:51 +01:00
powershell_suspicious_invocation_generic.yml Sysmon as 'service' of product 'windows' 2017-03-13 09:23:08 +01:00
powershell_suspicious_invocation_specific.yml Sysmon as 'service' of product 'windows' 2017-03-13 09:23:08 +01:00