TS
Tim Shelton
First rule: Sun Mar 05 2017 00:00:00 GMT+0000 (Coordinated Universal Time)
0rules authored
4sole author
62co-authored
By Severity
critical
2
high
22
medium
38
low
4
informational
0
By Status
stable
2
test
64
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Suspicious Copy From or To System Directory
Fri Jul 03 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
WScript or CScript Dropper - File
Mon Jan 10 2022 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Potentially Suspicious Powershell Script Execution From Temp Folder
Wed Jul 14 2021 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Files With System Process Name In Unsuspected Locations
Tue May 26 2020 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Office Autorun Keys Modification
Fri Oct 25 2019 00:00:00 GMT+0000 (Coordinated Universal Time)
mediumDetection
Malicious PowerShell Commandlets - ScriptBlock
Sun Mar 05 2017 00:00:00 GMT+0000 (Coordinated Universal Time)
highDetection
Browse all 66 rules by Tim Shelton
Filter the full rule library to see only their contributions