Update proc_creation_win_lolbin_findstr.yml

This commit is contained in:
Nasreddine Bencherchali
2022-06-21 15:36:21 +01:00
parent e3bfb18f64
commit b2ce10ea2a
@@ -33,7 +33,7 @@ detection:
CommandLine|contains:
- /i
- -i
condition: selectionFindstr and (all of selection_cli_download* or all of selection_cli_creds*)
condition: selectionFindstr and (all of selection_cli_download* or all of selection_cli_creds*)
falsepositives:
- Administrative findstr usage
level: medium