Merge branch 'master' into update_gpo_ena
This commit is contained in:
@@ -140,6 +140,7 @@ disabled = 0
|
|||||||
start_from = oldest
|
start_from = oldest
|
||||||
current_only = 0
|
current_only = 0
|
||||||
checkpointInterval = 5
|
checkpointInterval = 5
|
||||||
|
blacklist1 = EventCode="4798" Message=".+Process Name:.+\\osqueryd\\osqueryd.exe"
|
||||||
|
|
||||||
[WinEventLog://WEC3-Windows-Diagnostics]
|
[WinEventLog://WEC3-Windows-Diagnostics]
|
||||||
sourcetype = WinEventLog:System
|
sourcetype = WinEventLog:System
|
||||||
|
|||||||
@@ -22,4 +22,4 @@ FORMAT = nullQueue
|
|||||||
[autoruns_wineventlog_null]
|
[autoruns_wineventlog_null]
|
||||||
REGEX = "Script\sName\s=\sC\:\\Program Files\\AutorunsToWinEventLog\\AutorunsToWinEventLog.ps1"
|
REGEX = "Script\sName\s=\sC\:\\Program Files\\AutorunsToWinEventLog\\AutorunsToWinEventLog.ps1"
|
||||||
DEST_KEY = queue
|
DEST_KEY = queue
|
||||||
FORMAT = nullQueue
|
FORMAT = nullQueue
|
||||||
|
|||||||
Reference in New Issue
Block a user