AH
Andreas Hunkeler
First rule: Sat Jun 15 2019 02:00:00 GMT+0200 (Central European Summer Time)
0rules authored
7sole author
6co-authored
By Severity
critical
0
high
7
medium
6
low
0
informational
0
By Status
stable
1
test
12
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Potential Defense Evasion Via Binary Rename
Sat Jun 15 2019 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
New PortProxy Registry Entry Added
Tue Jun 22 2021 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
.Class Extension URI Ending Request
Tue Dec 21 2021 01:00:00 GMT+0100 (Central European Standard Time)
mediumThreat Hunt
Suspicious Processes Spawned by Java.EXE
Fri Dec 17 2021 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Shell Process Spawned by Java.EXE
Fri Dec 17 2021 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
New File Association Using Exefile
Fri Nov 19 2021 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Browse all 13 rules by Andreas Hunkeler
Filter the full rule library to see only their contributions