diff --git a/0_custom_configuration/all_modules.txt b/0_custom_configuration/all_modules.txt index d0b50367..52dae086 100644 Binary files a/0_custom_configuration/all_modules.txt and b/0_custom_configuration/all_modules.txt differ diff --git a/sysmonconfig.xml b/sysmonconfig.xml index 5d99e6b2..ec25b91b 100644 --- a/sysmonconfig.xml +++ b/sysmonconfig.xml @@ -782,6 +782,18 @@ 5986 psexec.exe psexesvc.exe + + 445;389;8492;636;3268;3269 + C:\Windows\System32\lsass.exe + + + 445;389;8492;636;3268;3269 + c:\Windows\System32\dsamain.exe + + + 445;389;8492;636;3268;3269 + 4 + C:\Users C:\ProgramData C:\Windows\Temp