Files
blue-team-tools/rules/windows/sysmon
Karneades 865d971704 Remove backslashes in CommandLine for sticky key rule
Example command line is exactly "cmd.exe sethc.exe 211".
=> the detection with *\cmd.exe... would not match.
2019-04-03 16:16:18 +02:00
..
2019-03-06 05:25:12 +01:00
2019-03-06 05:25:12 +01:00
2019-03-06 05:25:12 +01:00