Detection rules › By event

Microsoft-Windows-Windows-Defender Event ID 5007

8 detection rules reference this event. View event page.

Sigma (5)

Splunk (3)