SigmaHQ/rules/windows/builtin
2017-02-19 00:31:59 +01:00
..
win_alert_mimikatz_keywords.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_av_relevant_match.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_eventlog_cleared.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_failed_logon_reasons.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_failed_logons_single_source.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_kerberos_manipulation.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_lsass_dump.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_rc4_kerberos.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00
win_susp_security_eventlog_cleared.yml Added "logsource" sections and new rule 2017-02-19 00:31:59 +01:00