Detection rules › By event

Microsoft-Windows-Sysmon event 9

3 detection rules reference this event. View event page.

Sigma (1)

Splunk (2)