ceramicskate0 / sysmon-config

CeramicSkate0 Sysmon configuration fork file template with default high-quality event tracing
https://github.com/ceramicskate0/sysmon-config
9 stars 0 forks source link

id 11 exclude #91

Closed ghost closed 1 year ago

ghost commented 1 year ago

Image: C:\Program Files\Symantec\Symantec Endpoint Protection.... TargetFilename: C:\ProgramData\Symantec\Symantec Endpoint Protection\14.3.9689.7000.105\Data\IRON