MA
Max Altgelt
Nextron Systems
@Infernomax
First rule: Sun Mar 05 2017 00:00:00 GMT+0000 (Coordinated Universal Time)
Commits on SigmaHQPull Requests0rules authored
12sole author
11co-authored
Rule Types
By Severity
critical
2
high
15
medium
5
low
1
informational
0
By Status
stable
0
test
23
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Potentially Suspicious Powershell Script Execution From Temp Folder
Wed Jul 14 2021 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Malicious PowerShell Commandlets - ScriptBlock
Sun Mar 05 2017 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Syslog Clearing or Removal Via System Utilities
Fri Oct 15 2021 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Process Creation Using Sysnative Folder
Tue Aug 23 2022 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Process Deletion of Its Own Executable
Tue Sep 03 2024 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Network Connection Initiated By Eqnedt32.EXE
Thu Apr 14 2022 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Browse all 23 rules by Max Altgelt
Filter the full rule library to see only their contributions