SwiftOnSecurity / sysmon-config

Sysmon configuration file template with default high-quality event tracing
4.73k stars 1.69k forks source link

Include Imphash #101

Closed Neo23x0 closed 4 years ago

Neo23x0 commented 4 years ago

Imphash calculation is very important from my point of view

ecapuano commented 4 years ago

+1

StevenZD commented 4 years ago

+1

mback2k commented 4 years ago

I think this one can be closed, IMPHASH is already enabled in latest config.

SwiftOnSecurity commented 4 years ago

Fixed