HKEY_LOCAL_MACHINESYSTEMCurrentControlSetServices* AND HKEY_CURRENT_USERSOFTWAREMicrosoftWindowsCurrentVersionPoliciesSystem HKEY_LOCAL_MACHINESoftwareMicrosoftWindowsCurrentVersionPoliciesSystem Process path does not match *explorer.exe AND path matches *powershell.exe OR patch matches *cmd.exe Verdict is not safe and file path matches %systemroot%*Ĭommand line matches any of the following: The table below contains details of the default rules in each event category.Įvents - Rules to generate alerts if an application causes an eventĮvents - Rules to alert you about changes to the WindowsĮvents - Rules that detect modifications to any system files and folders.Įvents - Rules to create alerts when applications are downloaded via browsers.Įvents - Rules to alert you about file uploads to shared folders or external drives.Įvents - No default rules are set for this event category. Appendix 1 - Default Comodo Security Policyĭetermines which events will generate an alert for you.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |