Detection Rule List

Rule Name Rule Type Technique Count Creation Date
CAPA_mouse_cursor CAPA 1 1 year, 8 months
CAPA_stackstring_obf CAPA 0 1 year, 8 months
CAPA_detect_vm_process CAPA 2 1 year, 8 months
CAPA_device_pipe CAPA 0 1 year, 8 months
CAPA_timestomp CAPA 0 1 year, 8 months
CAPA_ntglobalflag CAPA 1 1 year, 8 months
CAPA_vm_artefact CAPA 1 1 year, 8 months
CAPA_kill_process CAPA 1 1 year, 8 months
CAPA_QueryPerformanceCounter CAPA 1 1 year, 8 months
CAPA_output_debug_string CAPA 1 1 year, 8 months
CAPA_clear_log CAPA 1 1 year, 8 months
CAPA_crash_eventlog CAPA 2 1 year, 8 months
CAPA_Delete_Volume_Shadow_Copy CAPA 1 1 year, 8 months
CAPA_debug_register CAPA 1 1 year, 8 months
CAPA_sandbox_name CAPA 1 1 year, 8 months
CAPA_resize_volume_shadow_copy_storage CAPA 0 1 year, 8 months

Filter