Files
blue-team-tools/rules/windows/process_creation
Swachchhanda Shrawan Poudel 8372e76e9b Merge PR #5629 from @swachchhanda000 - increase rule coverage
update: Regsvr32 DLL Execution With Suspicious File Extension - add coverage for regsvr executing '.log' extension
update: Suspicious Windows Service Tampering - add coverage for Windows service tampering through wmic and PowerShell WMI module
2025-09-22 12:18:11 +02:00
..