Merge pull request #747 from zaphodef/fix/win_susp_backup_delete_source

Fix 'source' value for win_susp_backup_delete
This commit is contained in:
Florian Roth 2020-05-25 10:48:36 +02:00 committed by GitHub
commit a962bd1bc1
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -16,7 +16,7 @@ logsource:
detection:
selection:
EventID: 524
Source: Backup
Source: Microsoft-Windows-Backup
condition: selection
falsepositives:
- Unknown