diff --git a/sysmonconfig-export.xml b/sysmonconfig-export.xml index f4acf26c..a93fc11c 100644 --- a/sysmonconfig-export.xml +++ b/sysmonconfig-export.xml @@ -313,9 +313,14 @@ wmic.exe wscript.exe + netcat.exe nc.exe + nc64.exe ncat.exe + procdump.exe + procdump64.exe psexec.exe + psexec64.exe psexesvc.exe tor.exe vnc.exe @@ -332,7 +337,9 @@ 3389 5800 5900 - 444 + 5985 + 5986 + 4444 1080 3128 @@ -1156,4 +1163,4 @@ - \ No newline at end of file +