| DisplayName | Description | ID | Target | Enabled | Frequency | Remotable |
| Security Monitoring: Discover Admin Accounts | This discovery, once enabled will discover all admin accounts. NOTE: Enable for only one machine and enable on a machine that has the AD PowerShell Module installed. | Security.Monitoring.AdminAccountDiscovery | Microsoft.Windows.Computer | False | 86400 | False |
| Security Monitoring: Distributed App DC Discovery | Populates Security Monitoring Distributed Application | Security.Monitoring.DA.DCDiscovery | Microsoft.Windows.Server.DC.Computer | True | 300 | False |
| Security Monitoring: Distributed App MemberServer Discovery | Populates Security Monitoring Distributed Application | Security.Monitoring.DA.MSDiscovery | Microsoft.Windows.Computer | True | 300 | False |
| Security Monitoring: User Writeable Directories Seed Class | If reg key to discover user writeable locations on a server is populated, this discovery will initiate the seed discovery | Security.Monitoring.Discoveries.UserWriteableLocationSeed | Microsoft.Windows.Computer | True | 86400 | False |
| Security Monitoring: Discover Writeable File Locations | This will discover writeable file locations in windows or program files | Security.Monitoring.DiscoverWriteableFileLocations | Security.Monitoring.WriteableLocationsSeedClass | True | 0 | False |
| Security Monitoring: Populate Extended Writeable Directory Monitoring Group | This discovery will put the windows computer objects in a group that can be used for overrides. | Security.Monitoring.PopulateExtendedWriteableDirectoryComputerGroup | Security.Monitoring.WindowsComputersExtendedWriteableDirectoryMonitoring | True | 0 | False |