Index of /github/opensearch-project/security-analytics/src/main/resources/rules/windows/registry/registry_set/


../
registry_set_abusing_windows_telemetry_for_pers..> 05-Aug-2023 01:06                1368
registry_set_add_load_service_in_safe_mode.yml     05-Aug-2023 01:06                1416
registry_set_add_port_monitor.yml                  05-Aug-2023 01:06                1211
registry_set_asep_reg_keys_modification_classes..> 05-Aug-2023 01:06                2359
registry_set_asep_reg_keys_modification_common.yml 05-Aug-2023 01:06                3906
registry_set_asep_reg_keys_modification_current..> 05-Aug-2023 01:06                2130
registry_set_asep_reg_keys_modification_current..> 05-Aug-2023 01:06                6124
registry_set_asep_reg_keys_modification_current..> 05-Aug-2023 01:06                3705
registry_set_asep_reg_keys_modification_interne..> 05-Aug-2023 01:06                2072
registry_set_asep_reg_keys_modification_office.yml 05-Aug-2023 01:06                3242
registry_set_asep_reg_keys_modification_session..> 05-Aug-2023 01:06                1623
registry_set_asep_reg_keys_modification_system_..> 05-Aug-2023 01:06                1516
registry_set_asep_reg_keys_modification_winsock..> 05-Aug-2023 01:06                1666
registry_set_asep_reg_keys_modification_wow6432..> 05-Aug-2023 01:06                3902
registry_set_asep_reg_keys_modification_wow6432..> 05-Aug-2023 01:06                2108
registry_set_asep_reg_keys_modification_wow6432..> 05-Aug-2023 01:06                1729
registry_set_blackbyte_ransomware.yml              05-Aug-2023 01:06                1097
registry_set_bypass_uac_using_delegateexecute.yml  05-Aug-2023 01:06                 913
registry_set_bypass_uac_using_eventviewer.yml      05-Aug-2023 01:06                 918
registry_set_bypass_uac_using_silentcleanup_tas..> 05-Aug-2023 01:06                 965
registry_set_change_rdp_port.yml                   05-Aug-2023 01:06                1024
registry_set_change_security_zones.yml             05-Aug-2023 01:06                1031
registry_set_chrome_extension.yml                  05-Aug-2023 01:06                7570
registry_set_cobaltstrike_service_installs.yml     05-Aug-2023 01:06                1442
registry_set_comhijack_sdclt.yml                   05-Aug-2023 01:06                 678
registry_set_creation_service_susp_folder.yml      05-Aug-2023 01:06                1288
registry_set_creation_service_temp_folder.yml      05-Aug-2023 01:06                1128
registry_set_creation_service_uncommon_folder.yml  05-Aug-2023 01:06                1504
registry_set_custom_file_open_handler_powershel..> 05-Aug-2023 01:06                 741
registry_set_cve_2020_1048_new_printer_port.yml    05-Aug-2023 01:06                 864
registry_set_cve_2022_30190_msdt_follina.yml       05-Aug-2023 01:06                 761
registry_set_defender_disabled.yml                 05-Aug-2023 01:06                1483
registry_set_defender_exclusions.yml               05-Aug-2023 01:06                 722
registry_set_defender_realtime_protection_disab..> 05-Aug-2023 01:06                1715
registry_set_dhcp_calloutdll.yml                   05-Aug-2023 01:06                 965
registry_set_disable_administrative_share.yml      05-Aug-2023 01:06                1017
registry_set_disable_defender_firewall.yml         05-Aug-2023 01:06                1284
registry_set_disable_fonction_user.yml             05-Aug-2023 01:06                1934
registry_set_disable_microsoft_office_security_..> 05-Aug-2023 01:06                1621
registry_set_disable_system_restore.yml            05-Aug-2023 01:06                 941
registry_set_disable_uac_registry.yml              05-Aug-2023 01:06                 860
registry_set_disable_winevt_logging.yml            05-Aug-2023 01:06                1098
registry_set_disabled_exploit_guard_net_protect..> 05-Aug-2023 01:06                 846
registry_set_disabled_microsoft_defender_eventl..> 05-Aug-2023 01:06                 844
registry_set_disabled_pua_protection_on_microso..> 05-Aug-2023 01:06                 735
registry_set_disabled_tamper_protection_on_micr..> 05-Aug-2023 01:06                1094
registry_set_dns_over_https_enabled.yml            05-Aug-2023 01:06                1506
registry_set_enabling_cor_profiler_env_variable..> 05-Aug-2023 01:06                 914
registry_set_enabling_turnoffcheck.yml             05-Aug-2023 01:06                 808
registry_set_etw_disabled.yml                      05-Aug-2023 01:06                1608
registry_set_file_association_exefile.yml          05-Aug-2023 01:06                 652
registry_set_globalflags_persistence.yml           05-Aug-2023 01:06                1063
registry_set_hidden_extention.yml                  05-Aug-2023 01:06                1174
registry_set_hide_file.yml                         05-Aug-2023 01:06                 956
registry_set_hide_fonction_user.yml                05-Aug-2023 01:06                1496
registry_set_ie_persistence.yml                    05-Aug-2023 01:06                1167
registry_set_install_root_or_ca_certificat.yml     05-Aug-2023 01:06                1585
registry_set_lolbin_onedrivestandaloneupdater.yml  05-Aug-2023 01:06                 888
registry_set_mal_adwind.yml                        05-Aug-2023 01:06                 983
registry_set_mal_blue_mockingbird.yml              05-Aug-2023 01:06                 708
registry_set_new_application_appcompat.yml         05-Aug-2023 01:06                 988
registry_set_office_enable_dde.yml                 05-Aug-2023 01:06                 963
registry_set_office_security.yml                   05-Aug-2023 01:06                1040
registry_set_office_vsto_persistence.yml           05-Aug-2023 01:06                1468
registry_set_outlook_c2_registry_key.yml           05-Aug-2023 01:06                 903
registry_set_outlook_registry_todaypage.yml        05-Aug-2023 01:06                1155
registry_set_outlook_registry_webview.yml          05-Aug-2023 01:06                 989
registry_set_outlook_security.yml                  05-Aug-2023 01:06                 788
registry_set_persistence_search_order.yml          05-Aug-2023 01:06                2886
registry_set_powershell_as_service.yml             05-Aug-2023 01:06                 742
registry_set_powershell_in_run_keys.yml            05-Aug-2023 01:06                1040
registry_set_powershell_logging_disabled.yml       05-Aug-2023 01:06                1173
registry_set_rdp_registry_modification.yml         05-Aug-2023 01:06                 939
registry_set_rdp_settings_hijack.yml               05-Aug-2023 01:06                1270
registry_set_scr_file_executed_by_rundll32.yml     05-Aug-2023 01:06                1069
registry_set_set_nopolicies_user.yml               05-Aug-2023 01:06                1620
registry_set_set_servicedll.yml                    05-Aug-2023 01:06                1180
registry_set_shim_databases_persistence.yml        05-Aug-2023 01:06                1300
registry_set_silentprocessexit.yml                 05-Aug-2023 01:06                 902
registry_set_susp_printer_driver.yml               05-Aug-2023 01:06                 890
registry_set_susp_reg_persist_explorer_run.yml     05-Aug-2023 01:06                1021
registry_set_susp_run_key_img_folder.yml           05-Aug-2023 01:06                1284
registry_set_susp_service_installed.yml            05-Aug-2023 01:06                1340
registry_set_taskcache_entry.yml                   05-Aug-2023 01:06                1359
registry_set_telemetry_persistence.yml             05-Aug-2023 01:06                1026
registry_set_timeproviders_dllname.yml             05-Aug-2023 01:06                1037
registry_set_uac_bypass_eventvwr.yml               05-Aug-2023 01:06                 831
registry_set_uac_bypass_sdclt.yml                  05-Aug-2023 01:06                 985
registry_set_uac_bypass_winsat.yml                 05-Aug-2023 01:06                 841
registry_set_uac_bypass_wmp.yml                    05-Aug-2023 01:06                 806
registry_set_vbs_payload_stored.yml                05-Aug-2023 01:06                1498
registry_set_wab_dllpath_reg_change.yml            05-Aug-2023 01:06                 960
registry_set_wdigest_enable_uselogoncredential.yml 05-Aug-2023 01:06                1025
registry_set_winlogon_notify_key.yml               05-Aug-2023 01:06                 971