From 12f0b6d4225fd66d876697a7d6bdefa34356d7af Mon Sep 17 00:00:00 2001 From: Tanaka Zakku <71482215+YamatoSecurity@users.noreply.github.com> Date: Fri, 5 Nov 2021 12:22:35 +0900 Subject: [PATCH] not needed because of generic clear event --- rules/deep_blue_cli/system/104.yml | 13 ------------- 1 file changed, 13 deletions(-) delete mode 100644 rules/deep_blue_cli/system/104.yml diff --git a/rules/deep_blue_cli/system/104.yml b/rules/deep_blue_cli/system/104.yml deleted file mode 100644 index 25fce57f..00000000 --- a/rules/deep_blue_cli/system/104.yml +++ /dev/null @@ -1,13 +0,0 @@ -title: The System log file was cleared -description: hogehoge -author: Yea -detection: - selection: - Channel: System - EventID: 104 - # condition: selection -falsepositives: - - unknown -output: 'System Log Clear¥nThe System log was cleared.' -creation_date: 2020/11/8 -uodated_date: 2020/11/8