Removed some spaces and added Win 10 WMI eventlog

This commit is contained in:
Florian Roth 2017-08-22 10:04:56 +02:00
parent 59821d1bcb
commit edf2787402

View File

@ -28,12 +28,17 @@ logsources:
product: windows
service: powershell-classic
conditions:
source: 'Windows PowerShell'
source: 'Windows PowerShell'
windows-powershell:
product: windows
service: taskscheduler
conditions:
source: 'WinEventLog:Microsoft-Windows-TaskScheduler/Operational'
windows-wmi:
product: windows
service: wmi
conditions:
source: 'WinEventLog:Microsoft-Windows-WMI-Activity/Operational'
windows-dns-server:
product: windows
service: dns-server