Logo
Explore Help
Sign In
security-tools/blue-team-tools
1
0
Fork 0
You've already forked blue-team-tools
Code Issues Pull Requests Actions Packages Projects Releases Wiki Activity
Files
30fc4bd0300f37e3b9ce79d1bca9556da5c30eb9
blue-team-tools/rules/windows/powershell
T
History
Lurkkeli 30fc4bd030 powershell xor commandline
New rule to detect -bxor usage in a powershell commandline.
2018-09-05 09:21:15 +02:00
..
powershell_downgrade_attack.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_exe_calling_ps.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_malicious_commandlets.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_malicious_keywords.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_NTFS_Alternate_Data_Streams
Added quotation marks
2018-07-26 18:10:21 +02:00
powershell_prompt_credentials.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_psattack.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_suspicious_download.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_suspicious_invocation_generic.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_suspicious_invocation_specific.yml
Tagged windows powershell, other and malware rules.
2018-07-24 10:56:41 +02:00
powershell_xor_commandline.yml
powershell xor commandline
2018-09-05 09:21:15 +02:00
Powered by Gitea Version: 1.26.1 Page: 197ms Template: 28ms
Auto
English
Bahasa Indonesia Deutsch English Español Français Gaeilge Italiano Latviešu Magyar nyelv Nederlands Polski Português de Portugal Português do Brasil Suomi Svenska Türkçe Čeština Ελληνικά Български Русский Українська فارسی മലയാളം 日本語 简体中文 繁體中文(台灣) 繁體中文(香港) 한국어
Licenses API