From 320bb9f8c461f9404dfecb250c2dc94be4be4bfa Mon Sep 17 00:00:00 2001 From: Thomas Patzke Date: Tue, 14 Aug 2018 21:28:17 +0200 Subject: [PATCH] Added rewrite config to generic sysmon configuration --- tools/config/generic/sysmon.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/tools/config/generic/sysmon.yml b/tools/config/generic/sysmon.yml index ab9d94d8d..63eab0c16 100644 --- a/tools/config/generic/sysmon.yml +++ b/tools/config/generic/sysmon.yml @@ -4,3 +4,6 @@ logsources: product: windows conditions: EventID: 1 + rewrite: + category: null + service: sysmon