New versions of Procmon and Sysmon were released. Sysmon supports a new rule: FileDeletedDetected. Use it to log deletions (without archiving the deleted file). Didier Stevens |
DidierStevens 638 Posts ISC Handler Apr 25th 2021 |
Thread locked Subscribe |
Apr 25th 2021 1 year ago |
Thank you Didier
|
Anonymous |
Quote |
Apr 25th 2021 1 year ago |
Sign Up for Free or Log In to start participating in the conversation!