4,745
Critical
6,737
High
2,549
Medium
122
Low
4,947
Blocked
9,207
Detected
4,745
Vulnerability
9,408
Detection
Clear
Overview
By Severity
By Source
By Category
By Action
Time Analysis
Daily Trend (7 Days)
Hourly Distribution
By Day of Week
Detailed Analysis
Top 10 Hosts
MITRE Tactics
MITRE Techniques
Vulnerability vs Detection Alerts
Vulnerability Alerts 4,745
Detection Alerts 9,408
Process Analysis
Top 10 Processes
Top 10 Parent Processes
Top 10 Users
Alert Analysis
Alert Type
Resolution Status
Monthly Trend (6M)
Weekly Trend (4W)
Top 10 Alert Names
Most Frequent Alerts
MITRE ATT&CK Kill Chain
All Alerts Showing 1-100 of 14153
ID Severity Source Name Host Action Category Detected
999 medium XDR BIOC PowerShell runs with known Mimikatz arguments DESKTOP-FNUMV3U Detected Collection 01-01 14:29
998 high XDR BIOC Command-line arguments match Mimikatz execution DESKTOP-FNUMV3U Detected Credential Access 01-01 14:29
994 medium XDR Agent Suspicious Process Creation DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-01 14:29
993 medium XDR BIOC PowerShell runs with known Mimikatz arguments DESKTOP-FNUMV3U Detected Collection 01-01 14:22
99 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 12-30 22:43
989 medium XDR Agent Suspicious Process Creation DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-01 14:22
986 medium XDR Agent Suspicious Process Creation DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-01 14:15
985 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:12
98 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 22:43
977 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:12
9755 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 15:37
9753 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 16:32
9752 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 16:30
975 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:11
9747 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 15:30
9745 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 12:30
9744 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 16:30
9741 critical Vulnerability Policy CVE-2023-45853 vulnerability in zlib at /symantec_testmanager Detected (Scanned) VULNERABILITY 01-13 15:37
974 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:11
972 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:11
970 high XDR Agent Process Injection - 288965039 inbridge-42 Prevented (Blocked) Malware 01-01 14:11
97 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 22:43
965 high XDR Agent Process Injection - 288965039 inbridge-42 Prevented (Blocked) Malware 01-01 14:11
964 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:10
962 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:10
96 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 22:43
959 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:10
958 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:10
956 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:09
954 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:09
952 high XDR Agent Process Injection - 288965039 inbridge-42 Prevented (Blocked) Malware 01-01 14:08
95 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 12-30 21:53
948 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:08
947 high XDR Agent Process Injection - 288965039 in-bridge-40 Prevented (Blocked) Malware 01-01 14:08
944 high XDR Agent Process Injection - 288965039 in-bridge-40 Prevented (Blocked) Malware 01-01 14:08
942 medium XDR BIOC Credential Vault command-line access DESKTOP-FNUMV3U Detected Credential Access 01-01 14:08
94 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:43
938 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:08
937 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:08
936 high XDR Agent Credential Gathering Protection - 122198212 DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-01 14:08
935 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:07
93 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:43
928 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:07
927 high XDR Agent Process Injection - 288965039 inbridge-42 Prevented (Blocked) Malware 01-01 14:07
924 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:07
921 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:06
920 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:06
92 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:38
915 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:06
914 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:05
91 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:38
907 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:05
904 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:05
902 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:05
901 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:05
900 medium XDR Agent WildFire Malware DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-01 14:05
90 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:33
9 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 16:33
898 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:04
894 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:04
893 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Detected (Reported) Malware 01-01 14:04
892 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-01 14:03
89 high XDR Agent Script Engine Activity - 2325564505 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:33
889 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:03
887 high XDR Agent Process Injection - 288965039 in-bridge-40 Detected (Reported) Malware 01-01 14:03
885 high XDR Agent Persistency - 779040014 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:03
8844 high XDR BIOC Command-line arguments match Mimikatz execution BOOK-R0BE6S1NC3 Detected Credential Access 01-06 02:17
8843 medium XDR Agent Suspicious Process Creation BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 01-06 02:17
8842 medium XDR Agent Suspicious Process Creation dwshin Prevented (Blocked) Malware 01-06 02:16
8841 medium XDR Agent WildFire Malware DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-06 02:15
8838 high XDR Agent Powershell Activity - 3990759154 BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 01-06 02:10
8837 high XDR Agent Powershell Activity - 3083271452 BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 01-06 02:10
8836 medium XDR Agent WildFire Malware BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 01-06 02:10
8835 medium XDR Agent WildFire Malware BOOK-R0BE6S1NC3 Prevented (Blocked) Malware 01-06 02:10
8833 medium XDR Agent WildFire Malware teahee Prevented (Blocked) Malware 01-06 02:09
8832 medium XDR Agent WildFire Malware dwshin Prevented (Blocked) Malware 01-06 02:08
8831 high XDR Agent File Drop - 3732557733 teahee Detected (Reported) Malware 01-06 02:04
8830 high XDR Agent File Drop - 1815185192 teahee Prevented (Blocked) Malware 01-06 02:04
8828 medium XDR Agent Suspicious Process Creation dwshin Prevented (Blocked) Malware 01-06 02:02
8827 medium XDR Agent WildFire Malware teahee Prevented (Blocked) Malware 01-06 01:57
8826 high XDR Agent Protection Against Security Measures Bypass Techniques - 1952317967 dwshin Detected (Reported) Malware 01-06 01:41
8825 high XDR Agent File Drop - 2775215878 dwshin Prevented (Blocked) Malware 01-06 01:41
8823 high XDR Agent File Drop - 3732557733 dwshin Prevented (Blocked) Malware 01-06 01:34
8822 high XDR Agent File Drop - 1815185192 dwshin Prevented (Blocked) Malware 01-06 01:34
8821 high XDR Agent Script Engine Activity - 3247043810 teahee Prevented (Blocked) Malware 01-06 01:30
8820 high XDR Agent File Drop - 3732557733 dwshin Prevented (Blocked) Malware 01-06 01:13
882 high XDR Agent Process Injection - 288965039 inbridge-ubt-24 Prevented (Blocked) Malware 01-01 14:03
8818 medium XDR Agent WildFire Malware DESKTOP-FNUMV3U Prevented (Blocked) Malware 01-06 01:09
8817 high XDR Agent Evasion Technique - 527483761 dwshin Prevented (Blocked) Malware 01-06 01:06
8816 medium XDR Agent WildFire Malware teahee Prevented (Blocked) Malware 01-06 01:05
8815 medium XDR Agent WildFire Malware dwshin Prevented (Blocked) Malware 01-06 01:02
8814 high XDR Agent Powershell Activity - 3990759154 teahee Detected (Reported) Malware 01-06 00:56
8813 high XDR Agent Powershell Activity - 3083271452 teahee Prevented (Blocked) Malware 01-06 00:56
8812 high XDR Agent Powershell Activity - 3990759154 dwshin Prevented (Blocked) Malware 01-06 00:52
8811 medium XDR Agent WildFire Malware teahee Prevented (Blocked) Malware 01-06 00:51
8810 high XDR Agent Credential Gathering Protection - 122198212 dwshin Prevented (Blocked) Malware 01-06 00:45
8807 high XDR Agent Process Injection - 288965039 inbridge-42 Detected (Reported) Malware 01-06 00:39
8803 high XDR Agent Persistency - 779040014 inbridge-42 Prevented (Blocked) Malware 01-06 00:39
88 high XDR Agent Script Engine Activity - 2431936258 BOOK-R0BE6S1NC3 Detected (Reported) Malware 12-30 18:28
8799 high XDR Agent Persistency - 456694134 in-bridge-40 Detected (Reported) Malware 01-06 00:39
Last refresh: 2026-01-20 10:44:39