TR
Tim Rauch
@T-R2
First rule: Tue Sep 03 2019 02:00:00 GMT+0200 (Central European Summer Time)
Commits on SigmaHQPull Requests0rules authored
0sole author
27co-authored
Rule Types
By Severity
critical
0
high
14
medium
13
low
0
informational
0
By Status
stable
1
test
26
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Conhost Spawned By Uncommon Parent Process
Wed Sep 28 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Forfiles Command Execution
Tue Jun 14 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Unusual Parent Process For Cmd.EXE
Wed Sep 21 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
HackTool - Potential Impacket Lateral Movement Activity
Tue Sep 03 2019 02:00:00 GMT+0200 (Central European Summer Time)
highDetection
IIS WebServer Access Logs Deleted
Fri Sep 16 2022 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Unusual File Deletion by Dns.exe
Tue Sep 27 2022 02:00:00 GMT+0200 (Central European Summer Time)
highDetection
Browse all 27 rules by Tim Rauch
Filter the full rule library to see only their contributions