Files
splunk-security_content/lookups/prohibited_apps_launching_cmd.csv
pyth0n1c 29b2332652 more cleanup of lookups to follow new format.
this involved renaming some CSVs to remove the
dates from them or force their naming schema to
match the corresponding YML name for CSV
detections
2025-01-03 10:27:49 -08:00

416 B

1prohibited_applicationsisProhibited
2winword.exeprohibited
3EXCEL.EXEprohibited
4OUTLOOK.EXEprohibited
5POWERPNT.EXEprohibited
6visio.exeprohibited
7mspub.exeprohibited
8Acrobat.exeprohibited
9Acrord32.exeprohibited
10chrome.exeprohibited
11iexplore.exeprohibited
12opera.exeprohibited
13firefox.exeprohibited
14java.exeprohibited
15powershell.exeprohibited
16mshta.exeprohibited
17zoom.exeprohibitied
18node.exeprohibited