SigmaHQ/rules/windows
2021-08-31 11:35:54 +05:45
..
builtin Merging upstream updates 2021-07-01 12:18:30 +05:45
create_remote_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
create_stream_hash Merging upstream updates 2021-07-01 12:18:30 +05:45
deprecated Merging upstream updates 2021-07-01 12:18:30 +05:45
dns_query Merging upstream updates 2021-07-01 12:18:30 +05:45
driver_load Merging upstream updates 2021-07-01 12:18:30 +05:45
file_delete Added rule for deletion of DLLs by PrintNightmare 2021-07-01 16:33:55 +05:45
file_event Added new path 2021-07-01 16:24:07 +05:45
image_load Fixed bug in path 2021-07-01 12:26:00 +05:45
malware Merging upstream updates 2021-07-01 12:18:30 +05:45
network_connection Merging upstream updates 2021-07-01 12:18:30 +05:45
other Added and updated Defender's tamper related rules 2021-07-05 20:30:07 +05:45
pipe_created Merging upstream updates 2021-07-01 12:18:30 +05:45
powershell increased level 2021-07-17 09:50:11 +02:00
process_access Added rule for pypykatz 2021-08-03 15:06:27 +05:45
process_creation Added new malwarebytes reference for Cab File Expansion rule 2021-08-31 11:35:54 +05:45
raw_access_thread Merging upstream updates 2021-07-01 12:18:30 +05:45
registry_event Added latest McAfee zloader's reference for Office Security Settings Changed 2021-07-12 16:56:21 +05:45
sysmon Merging upstream updates 2021-07-01 12:18:30 +05:45
wmi_event Merging upstream updates 2021-07-01 12:18:30 +05:45