Swachchhanda Shrawan Poudel
1e41c5378e
Merge PR #5534 from @swachchhanda000 - update PowerShell WebRequest rules
remove: PowerShell Web Download - deprecate duplicate rule in favour of 9fc51a3c-81b3-4fa7-b35f-7c02cf10fd2d
update: PowerShell Script With File Upload Capabilities - add invoke-restmethod cmdlet
update: Change User Agents with WebRequest - add invoke-restmethod cmdlet
update: Usage Of Web Request Commands And Cmdlets - add invoke-restmethod cmdlet
update: Usage Of Web Request Commands And Cmdlets - ScriptBlock - add invoke-restmethod cmdlet
update: Potential DLL File Download Via PowerShell Invoke-WebRequest - add invoke-restmethod cmdlet
update: PowerShell Download and Execution Cradles - add invoke-restmethod cmdlet
update: Suspicious Invoke-WebRequest Execution With DirectIP - add invoke-restmethod cmdlet
update: Suspicious Invoke-WebRequest Execution - add powershell_ise
update: Potential Data Exfiltration Activity Via CommandLine Tools - add invoke-restmethod cmdlet
update: Obfuscated IP Download Activity - add invoke-restmethod cmdlet
update: Suspicious PowerShell In Registry Run Keys - add invoke-restmethod cmdlet
---------
Co-authored-by: phantinuss <79651203+phantinuss@users.noreply.github.com>
2025-07-28 13:32:57 +02:00
..
2023-05-05 17:52:47 +02:00
2023-12-21 21:04:18 +01:00
2024-11-25 09:30:14 +01:00
2023-12-21 21:04:18 +01:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2023-10-04 19:06:57 +02:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2024-11-25 09:30:14 +01:00
2024-07-22 18:53:48 +02:00
2024-07-22 18:53:48 +02:00
2024-03-11 16:58:55 +01:00
2023-04-23 15:42:01 +02:00
2023-09-07 11:42:15 +02:00
2023-04-23 15:42:01 +02:00
2024-07-31 10:16:56 +02:00
2023-06-01 23:22:35 +02:00
2023-04-23 15:42:01 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2023-04-23 15:42:01 +02:00
2024-03-06 17:33:49 +01:00
2024-02-12 12:29:36 +01:00
2024-03-11 16:58:55 +01:00
2023-08-07 16:09:21 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-08-17 19:26:21 +02:00
2023-08-17 19:26:21 +02:00
2024-01-29 13:37:20 +01:00
2023-12-21 21:04:18 +01:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2025-05-20 23:12:55 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-04 14:23:08 +09:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-04 01:14:15 +01:00
2024-08-10 01:23:58 +02:00
2023-12-04 01:14:15 +01:00
2024-09-13 11:14:11 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-11-25 09:30:14 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-03-16 03:09:53 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-11-15 15:35:43 +01:00
2023-07-13 10:01:05 +02:00
2023-04-24 19:24:19 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-02 23:17:57 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-23 14:08:56 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2025-07-28 13:32:57 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-05-26 15:59:30 +02:00
2024-11-25 09:30:14 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-08-16 12:37:51 +02:00
2024-02-26 11:37:37 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-06-21 09:52:43 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-09-07 11:42:15 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2024-02-26 17:09:30 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-08-17 08:57:52 +02:00
2023-08-17 08:57:52 +02:00
2024-03-26 13:28:49 +01:00
2023-08-17 08:57:52 +02:00
2024-03-26 13:28:49 +01:00
2023-08-17 08:57:52 +02:00
2024-09-02 19:03:46 +02:00
2024-09-02 19:03:46 +02:00
2023-08-17 08:57:52 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-06-26 10:10:04 +01:00
2025-03-16 03:09:53 +01:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2023-05-02 23:17:57 +02:00
2023-04-23 15:42:01 +02:00
2025-01-31 18:08:59 +01:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-04-23 15:42:01 +02:00
2023-12-21 21:04:18 +01:00
2024-01-29 13:37:20 +01:00