Wiki source code of Use Cases für Defender Management
Last modified by Jannis Klein on 2024/03/19 17:57
Hide last authors
author | version | line-number | content |
---|---|---|---|
1.1 | 1 | {{aagon.priorisierung}} | |
2 | 160 | ||
3 | {{/aagon.priorisierung}} | ||
4.1 | 4 | ||
34.2 | 5 | Below are two possible use cases for Defender Management: | |
4.1 | 6 | ||
34.2 | 7 | * [[ASR rules: Event IDs 1121 and 1122 occur in conjunction with an lsass.exe and block the operation>>doc:ACMP.64.ACMP-Solutions.Security.Defender Management.Use Cases für Defender Management.ASR-Regeln\: Die Ereignis-ID’s 1121 und 1122 treten in Verbindung mit einer lsass\.exe auf und blockieren den Vorgang.WebHome]] | |
8 | * [[VirTool: Win32/DefenderTamperingRestore triggers a threat alert >>doc:ACMP.64.ACMP-Solutions.Security.Defender Management.Use Cases für Defender Management.VirTool\:Win32DefenderTamperingRestore triggert einen Bedrohungs-Alarm.WebHome]] | ||
4.1 | 9 | ||
10 |