Azure-Sentinel/Hunting Queries/ASimProcess
Pete Bryan a19afc47c1 ASIM renames 2022-03-02 15:05:56 -08:00
..
Discorddownloadinvokedfromcmdline(ASIMVersion).yaml ASIM renames 2022-03-02 15:05:56 -08:00
imProcess_Certutil-LOLBins.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_Dev-0056CommandLineActivityNovember2021(ASIMVersion).yaml ASIM renames 2022-03-02 15:05:56 -08:00
imProcess_ExchangePowerShellSnapin.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_HostExportingMailboxAndRemovingExport.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_Invoke-PowerShellTcpOneLine.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_NishangReverseTCPShellBase64.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_PowerCatDownload.yaml Assign new GUIDs 2021-06-23 15:23:59 +03:00
imProcess_ProcessEntropy.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_SolarWindsInventory.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_Suspicious_enumeration_using_adfind.yaml Replaced "match regex" with "contains" as it can be used and more performante 2021-06-24 14:07:49 +03:00
imProcess_Windows System Shutdown-Reboot(T1529).yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_cscript_summary.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_enumeration_user_and_group.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_persistence_create_account.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_powershell_downloads.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
imProcess_uncommon_processes.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00
inProcess_SignedBinaryProxyExecutionRundll32.yaml Revert "Revert "Merge branch 'master' of https://github.com/Azure/Azure-Sentinel"" 2022-01-03 16:21:46 +02:00