From 196aa6d83d9f4a47ffc9941df64f62e77ae0a2c8 Mon Sep 17 00:00:00 2001 From: frack113 <62423083+frack113@users.noreply.github.com> Date: Sat, 14 May 2022 09:42:32 +0200 Subject: [PATCH] move deprecated rules --- .../windows}/image_load_susp_winword_wmidll_load.yml | 0 .../windows/le_event_win_hktl_createminidump.yml | 0 .../windows}/posh_ps_access_to_chrome_login_data.yml | 0 .../windows}/registry_event_asep_reg_keys_modification.yml | 0 .../windows}/win_lateral_movement_condrv.yml | 0 5 files changed, 0 insertions(+), 0 deletions(-) rename {rules/windows/image_load => rules-deprecated/windows}/image_load_susp_winword_wmidll_load.yml (100%) rename rules/windows/file_event/file_event_win_hktl_createminidump.yml => rules-deprecated/windows/le_event_win_hktl_createminidump.yml (100%) rename {rules/windows/powershell/powershell_script => rules-deprecated/windows}/posh_ps_access_to_chrome_login_data.yml (100%) rename {rules/windows/registry/registry_event => rules-deprecated/windows}/registry_event_asep_reg_keys_modification.yml (100%) rename {rules/windows/builtin/security => rules-deprecated/windows}/win_lateral_movement_condrv.yml (100%) diff --git a/rules/windows/image_load/image_load_susp_winword_wmidll_load.yml b/rules-deprecated/windows/image_load_susp_winword_wmidll_load.yml similarity index 100% rename from rules/windows/image_load/image_load_susp_winword_wmidll_load.yml rename to rules-deprecated/windows/image_load_susp_winword_wmidll_load.yml diff --git a/rules/windows/file_event/file_event_win_hktl_createminidump.yml b/rules-deprecated/windows/le_event_win_hktl_createminidump.yml similarity index 100% rename from rules/windows/file_event/file_event_win_hktl_createminidump.yml rename to rules-deprecated/windows/le_event_win_hktl_createminidump.yml diff --git a/rules/windows/powershell/powershell_script/posh_ps_access_to_chrome_login_data.yml b/rules-deprecated/windows/posh_ps_access_to_chrome_login_data.yml similarity index 100% rename from rules/windows/powershell/powershell_script/posh_ps_access_to_chrome_login_data.yml rename to rules-deprecated/windows/posh_ps_access_to_chrome_login_data.yml diff --git a/rules/windows/registry/registry_event/registry_event_asep_reg_keys_modification.yml b/rules-deprecated/windows/registry_event_asep_reg_keys_modification.yml similarity index 100% rename from rules/windows/registry/registry_event/registry_event_asep_reg_keys_modification.yml rename to rules-deprecated/windows/registry_event_asep_reg_keys_modification.yml diff --git a/rules/windows/builtin/security/win_lateral_movement_condrv.yml b/rules-deprecated/windows/win_lateral_movement_condrv.yml similarity index 100% rename from rules/windows/builtin/security/win_lateral_movement_condrv.yml rename to rules-deprecated/windows/win_lateral_movement_condrv.yml