Update sysmon_notepad_network_connection.yml

This commit is contained in:
Jonhnathan 2020-10-15 16:21:38 -03:00 committed by GitHub
parent b479cbdb10
commit e20027965f
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -18,7 +18,7 @@ date: 2020/05/14
modified: 2020/08/24
detection:
selection:
Image: '*\notepad.exe'
Image|endswith: '\notepad.exe'
filter:
DestinationPort: '9100'
condition: selection and not filter