Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.


S. NoDevice TypeThreat Indicators generated
 1.
 
 
        
Windows OS


         
Window Defender
Suspicious Windows Event
Object Access Status
 Host Login
 Suspicious Service / Process
 Account Created / Enabled
 Account Deleted / Disabled
 Privilege Change
 Network Logout
 Directory Service Status
 System Time
 Group Policy Object
 2.    MSSQL   Login Success
 Login Failure
 Application
Object Access Status
 3.Windows IIS Web Exploit
 4. Windows DNS   Suspicious Port Activity
 Suspicious Domain
 5. Windows DHCP Application
 6. Windows SMTPEmail Info
 7. MS ExchangeEmail Info