From faf10a05d090f804d9dc5525f05938a39db5054e Mon Sep 17 00:00:00 2001 From: Tungsten66 <40893034+Tungsten66@users.noreply.github.com> Date: Mon, 3 Jul 2023 15:30:29 -0400 Subject: [PATCH] Update README.md Changes from comments of - Update SysmonFullDeployment.json #8226 --- Parsers/ASim Sysmon for Windows/README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Parsers/ASim Sysmon for Windows/README.md b/Parsers/ASim Sysmon for Windows/README.md index ace4151a73..7ea749fb6d 100644 --- a/Parsers/ASim Sysmon for Windows/README.md +++ b/Parsers/ASim Sysmon for Windows/README.md @@ -17,7 +17,7 @@ When deploying the parsers, you: The template deploys the following: -- ASIM Sysmon File Activity (11, 23 and 26) parsers - vimFileEventMicrosoftSysmonCreated, vimFileEventMicrosoftSysmonDeleted +- ASIM Sysmon File Activity (11, 23 and 26) parsers - vimFileEventMicrosoftSysmon - ASIM Sysmon Process Events (1 and 5) parsers - vimProcessCreateMicrosoftSysmon, vimProcessTerminateMicrosoftSysmon - ASIM Sysmon Registry Events (12,13 and 14) parser - vimRegistryEventMicrosoftSysmon - ASIM Sysmon DNS event (22) parsers - ASimDnsMicrosoftSysmon (regular), vimDnsMicrosoftSysmon (parametrized)