MB
Micah Babinski
First rule: Sun Dec 11 2022 01:00:00 GMT+0100 (Central European Standard Time)
0rules authored
9sole author
3co-authored
By Severity
critical
0
high
5
medium
7
low
0
informational
0
By Status
stable
0
test
10
experimental
2
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Potential Defense Evasion Via Right-to-Left Override
Wed Feb 15 2023 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Suspicious File Created by ArcSOC.exe
Tue Nov 25 2025 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Suspicious ArcSOC.exe Child Process
Tue Nov 25 2025 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
External Remote RDP Logon from Public IP
Thu Jan 19 2023 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
External Remote SMB Logon from Public IP
Thu Jan 19 2023 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
DarkGate - Autoit3.EXE File Creation By Uncommon Process
Sun Oct 15 2023 02:00:00 GMT+0200 (Central European Summer Time)
mediumEmerging Threat
Browse all 12 rules by Micah Babinski
Filter the full rule library to see only their contributions