This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
37cea85072d0da249c39171285339a2ce656d652
blue-team-tools
/
rules
/
windows
T
History
Florian Roth
37cea85072
Rundll32.exe suspicious network connections
2017-11-04 14:44:30 +01:00
..
builtin
Converted Windows 4688-only rules into 4688 and Sysmon/1 collections
2017-11-01 22:12:14 +01:00
malware
Converted Windows 4688-only rules into 4688 and Sysmon/1 collections
2017-11-01 22:12:14 +01:00
other
Added field names to first rules
2017-09-12 23:54:04 +02:00
powershell
Fixed the fixed PSAttack rule
2017-10-19 09:52:40 +02:00
sysmon
Rundll32.exe suspicious network connections
2017-11-04 14:44:30 +01:00