SigmaHQ/rules/windows
2021-04-15 02:02:25 +02:00
..
builtin Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
create_remote_thread Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00
create_stream_hash Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
dns_query - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
driver_load Fixes and improvements 2021-04-03 00:08:55 +02:00
file_delete Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
file_event Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
image_load Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
malware Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
network_connection Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
other Merge branch 'oscd' 2021-03-02 22:58:41 +03:00
pipe_created Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
powershell Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
process_access Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
process_creation Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00
raw_access_thread - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
registry_event Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
sysmon - Modified rules to use categories instead of hardcoded event IDs 2021-04-15 01:40:31 +02:00
wmi_event Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00