This website requires JavaScript.
Explore
Help
Sign In
security-tools
/
blue-team-tools
Watch
1
Star
0
Fork
0
You've already forked blue-team-tools
Code
Issues
Pull Requests
Actions
Packages
Projects
Releases
Wiki
Activity
Files
0.8
blue-team-tools
/
rules
/
windows
/
malware
T
History
Florian Roth
afa18245bf
Merge pull request
#254
from darkquasar/master
...
adding MPreter as McAfee classifies it
2019-02-23 07:34:04 +01:00
..
av_exploiting.yml
adding MPreter as McAfee classifies it
2019-02-22 15:22:10 +11:00
av_password_dumper.yml
ATT&CK tagging QA
2018-09-20 12:44:44 +02:00
av_relevant_files.yml
Escaped '\*' to '\\*' where required
2019-02-03 00:24:57 +01:00
av_webshell.yml
ATT&CK tagging QA
2018-09-20 12:44:44 +02:00
sysmon_malware_dridex.yml
Escaped '\*' to '\\*' where required
2019-02-03 00:24:57 +01:00
sysmon_malware_notpetya.yml
Escaped '\*' to '\\*' where required
2019-02-03 00:24:57 +01:00
sysmon_malware_wannacry.yml
Simplified rule conditions with new condition constructs
2018-03-06 23:14:43 +01:00
win_mal_adwind.yml
Escaped '\*' to '\\*' where required
2019-02-03 00:24:57 +01:00
win_mal_ursnif.yml
Changed registry root key
2019-02-22 21:30:30 +01:00
win_mal_wannacry.yml
Replace "logsource: description" with "definition" to match the specs
2018-11-15 09:00:06 +03:00