X
xknow
First rule: Sun Mar 24 2019 01:00:00 GMT+0100 (Central European Standard Time)
0rules authored
1sole author
5co-authored
Rule Types
By Severity
critical
0
high
2
medium
4
low
0
informational
0
By Status
stable
0
test
6
experimental
0
deprecated
0
unsupported
0
0
Total Rules
0
Stable Rules
0
High / Critical
0
Log Source Types
Recent RulesAll rules →
Potential Privileged System Service Operation - SeLoadDriverPrivilege
Mon Apr 08 2019 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
ADSI-Cache File Creation By Uncommon Tool
Sun Mar 24 2019 01:00:00 GMT+0100 (Central European Standard Time)
mediumDetection
Suspicious Service Installed
Mon Apr 08 2019 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Potential CommandLine Path Traversal Via Cmd.EXE
Thu Jun 11 2020 02:00:00 GMT+0200 (Central European Summer Time)
highDetection
Suspicious PROCEXP152.sys File Created In TMP
Mon Apr 08 2019 02:00:00 GMT+0200 (Central European Summer Time)
mediumDetection
Suspicious LDAP-Attributes Used
Sun Mar 24 2019 01:00:00 GMT+0100 (Central European Standard Time)
highDetection
Browse all 6 rules by xknow
Filter the full rule library to see only their contributions