From 743a054f5c7a1973517f9a6df537f1e6449d2bfe Mon Sep 17 00:00:00 2001 From: Dusty Miller Date: Fri, 30 Jul 2021 08:40:55 -0400 Subject: [PATCH] Add Splunk exclusions per sysmon-modular --- sysmonconfig-export.xml | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/sysmonconfig-export.xml b/sysmonconfig-export.xml index f4acf26..310eb99 100644 --- a/sysmonconfig-export.xml +++ b/sysmonconfig-export.xml @@ -224,6 +224,18 @@ "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type= "C:\Program Files\Google\Chrome\Application\chrome.exe" --type= + C:\Program Files\Splunk\bin\ + C:\Program Files\Splunk\bin\splunkd.exe + C:\Program Files\Splunk\bin\splunk.exe + D:\Program Files\Splunk\bin\ + D:\Program Files\Splunk\bin\splunkd.exe + D:\Program Files\Splunk\bin\splunk.exe + C:\Program Files\SplunkUniversalForwarder\bin\ + C:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe + C:\Program Files\SplunkUniversalForwarder\bin\splunk.exe + D:\Program Files\SplunkUniversalForwarder\bin\ + D:\Program Files\SplunkUniversalForwarder\bin\splunkd.exe + D:\Program Files\SplunkUniversalForwarder\bin\splunk.exe