Detection rules › By event
Microsoft-Windows-Sysmon event 6
Sigma (10)
- Driver Load From A Temporary Directory
- Malicious Driver Load
- Malicious Driver Load By Name
- PUA - Process Hacker Driver Load
- PUA - System Informer Driver Load
- Vulnerable Driver Load
- Vulnerable Driver Load By Name
- Vulnerable HackSys Extreme Vulnerable Driver Load
- Vulnerable WinRing0 Driver Load
- WinDivert Driver Load