Fixed single quote balance

This commit is contained in:
Thomas Patzke
2017-01-10 22:32:55 +01:00
committed by Florian Roth
parent 6125875d2d
commit c2f3ee25a8
+2 -2
View File
@@ -1,5 +1,5 @@
description: Eventlog Cleared
comment: Some threat groups tend to delete the local 'Security'' Eventlog using certain utitlities
comment: Some threat groups tend to delete the local 'Security' Eventlog using certain utitlities
detection:
selection:
- EventLog: Security
@@ -10,4 +10,4 @@ detection:
falsepositives:
- Rollout of log collection agents (the setup routine often includes a reset of the local Eventlog)
- System provisioning (system reset before the golden image creation)
level: 70
level: 70