52e39113b9
fix: Suspicious Sysmon as Execution Parent - Typo and restructure update: Antivirus PrinterNightmare CVE-2021-34527 Exploit Detection update: Antivirus Relevant File Paths Alerts update: Dump Ntds.dit To Suspicious Location update: MSI Installation From Suspicious Locations update: PowerShell Profile Modification - Reduce rule level to medium update: Obfuscated IP Download Activity --------- Co-authored-by: frack113 <62423083+frack113@users.noreply.github.com>