SigmaHQ/rules/windows
2021-05-11 11:18:01 +02:00
..
builtin Merge pull request #1464 from d4rk-d4nph3/master 2021-05-06 18:15:53 +02:00
create_remote_thread Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00
create_stream_hash Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
deprecated fix: buggy rule 2020-05-23 18:32:02 +02:00
dns_query - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
driver_load Update sysmon_vuln_dell_driver_load.yml 2021-05-05 14:31:01 +02:00
file_delete Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
file_event Merge pull request #1430 from Scoubi/patch-1 2021-05-04 12:27:56 +02:00
image_load Clean-up service: sysmon as it will be replaced by filling the category 2021-04-15 02:02:25 +02:00
malware Clean rule rules/windows/malware/win_mal_octopus_scanner.yml to use category 2021-04-15 02:30:41 +02:00
network_connection Correct cast-sensitive Key "DestinationIp" 2021-05-11 10:49:10 +02:00
other Update and rename rules/windows/other/win_Outlook_C2_Registry_Key.yml to rules/windows/registry_event_write/win_outlook_C2_registry_key.yml 2021-05-04 09:41:38 +02:00
pipe_created docs: extended authors of malicious pipe rule 2021-05-04 09:28:17 +02:00
powershell Merge pull request #1436 from SigmaHQ/rule-devel 2021-04-23 17:33:07 +02:00
process_access Merge branch 'pr-1158' 2021-04-08 23:01:54 +02:00
process_creation Correct cast-sensitive Key "OriginalFileName" 2021-05-11 11:18:01 +02:00
raw_access_thread - Remove 'service: sysmon' since defining the categories made the rules generic 2020-10-02 09:37:52 +02:00
registry_event fixed title capitalization 2021-05-05 15:22:09 +02:00
sysmon Merge pull request #1461 from d4rk-d4nph3/master 2021-05-05 12:42:27 +02:00
wmi_event Merge branch 'master' of https://github.com/SigmaHQ/sigma 2021-04-15 01:25:48 +02:00