Detection rules › By event

Microsoft-Windows-Sysmon Event ID 2

6 detection rules reference this event. View event page.

Sigma (2)

Elastic (1)

Kusto (1)

YARA-L (2)