Fixed field typo

This commit is contained in:
Sander 2020-10-15 15:27:11 +02:00
parent 02d49c091a
commit a8b31dfa5e

View File

@ -18,7 +18,7 @@ detection:
EventID: 15
Image|endswith: '\regedit.exe'
condition: selection
fieds:
fields:
- TargetFilename
falsepositives:
- Unknown