.. |
AppInstaller.yml
|
Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)
|
2021-11-25 09:42:26 +00:00 |
Aspnet_Compiler.yml
|
Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)
|
2021-11-25 09:42:26 +00:00 |
At.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Atbroker.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Bash.yml
|
Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)
|
2021-11-25 09:42:26 +00:00 |
Bitsadmin.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Certoc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Certreq.yml
|
Adding new Sigma references (AppInstaller, AspnetCompiler, Bash, Certreq) (#183)
|
2021-11-25 09:42:26 +00:00 |
Certutil.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Cleanmgr.yml
|
New cleanmgr indirect execution trick
|
2022-03-18 11:21:14 +01:00 |
Cmd.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Cmdkey.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Cmdl32.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Cmstp.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
ConfigSecurityPolicy.yml
|
Adding Sigma references to ConfigSecurityPolicy, Diantz, ExtExport & Extrac32 (#184)
|
2021-12-06 11:19:01 +00:00 |
Control.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Csc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Cscript.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
DataSvcUtil.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Desktopimgdownldr.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Dfsvc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Diantz.yml
|
Adding Sigma references to ConfigSecurityPolicy, Diantz, ExtExport & Extrac32 (#184)
|
2021-12-06 11:19:01 +00:00 |
Diskshadow.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Dllhost.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Dnscmd.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Esentutl.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Eventvwr.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Expand.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Explorer.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Extexport.yml
|
Adding Sigma references to ConfigSecurityPolicy, Diantz, ExtExport & Extrac32 (#184)
|
2021-12-06 11:19:01 +00:00 |
Extrac32.yml
|
Adding Sigma references to ConfigSecurityPolicy, Diantz, ExtExport & Extrac32 (#184)
|
2021-12-06 11:19:01 +00:00 |
Findstr.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Finger.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
FltMC.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Forfiles.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Ftp.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
GfxDownloadWrapper.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Gpscript.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Hh.yml
|
Odbcconf realign to T1218.008, hh.exe to T1218.001
|
2021-11-16 14:09:37 +00:00 |
Ie4uinit.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Ieexec.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Ilasm.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
IMEWDBLD.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Infdefaultinstall.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Installutil.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Jsc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Makecab.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Mavinject.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Microsoft.Workflow.Compiler.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Mmc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
MpCmdRun.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Msbuild.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Msconfig.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Msdt.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Mshta.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Msiexec.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Netsh.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Odbcconf.yml
|
Odbcconf realign to T1218.008, hh.exe to T1218.001
|
2021-11-16 14:09:37 +00:00 |
OfflineScannerShell.yml
|
MITRE ATT&CK realignment sprint
|
2021-11-05 18:58:26 +00:00 |
OneDriveStandaloneUpdater.yml
|
MITRE ATT&CK realignment sprint
|
2021-11-05 18:58:26 +00:00 |
Pcalua.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Pcwrun.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Pktmon.yml
|
MITRE ATT&CK realignment sprint
|
2021-11-05 18:58:26 +00:00 |
Pnputil.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Presentationhost.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Print.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
PrintBrm.yml
|
MITRE ATT&CK realignment sprint
|
2021-11-05 18:58:26 +00:00 |
Psr.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Rasautou.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Reg.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Regasm.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Regedit.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Regini.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Register-cimprovider.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Regsvcs.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Regsvr32.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Replace.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Rpcping.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Rundll32.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Runonce.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Runscripthelper.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Sc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Schtasks.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Scriptrunner.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
SettingSyncHost.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Stordiag.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Syncappvpublishingserver.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Ttdinject.yml
|
More changes (mainly changing generic T1218 to dev-specific T1127)
|
2021-11-05 20:06:57 +00:00 |
Tttracer.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Vbc.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Verclsid.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Wab.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Wlrmdr.yml
|
Fixing wlrmdr entry
|
2022-02-16 21:02:24 +00:00 |
Wmic.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
WorkFolders.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Wscript.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Wsreset.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |
Wuauclt.yml
|
Changing ATT&CK TID of wuauclt.exe entry (#193)
|
2022-01-23 22:24:59 +00:00 |
Xwizard.yml
|
Detection Resources and Other Updates (#179)
|
2021-11-15 08:19:03 -05:00 |