Skip to content

Error while using sigmac #2217

Closed Answered by frack113
dmange3190 asked this question in Q&A
Discussion options

You must be logged in to vote

Ubuntu 20.04

frack113@frack113-virtual-machine:~/sigma/tools$ python3 sigmac -t splunk -c config/generic/sysmon.yml ../rules/windows/process_creation/win_susp_whoami.yml
(EventID="1" Image="*\\whoami.exe")
frack113@frack113-virtual-machine:~/sigma/tools$ 
frack113@frack113-virtual-machine:~/sigma/tools$ ./sigmac -t splunk -c config/generic/sysmon.yml ../rules/windows/process_creation/win_susp_whoami.yml
(EventID="1" Image="*\\whoami.exe")
frack113@frack113-virtual-machine:~/sigma/tools$ 

Windows 10

D:\rootme\sigma\tools>python -V
Python 3.8.1

D:\rootme\sigma\tools>python sigmac -t splunk -c config/generic/sysmon.yml ../rules/windows/process_creation/win_susp_whoami.yml
(EventID="1" Image="*

Replies: 1 comment

Comment options

You must be logged in to vote
0 replies
Answer selected by frack113
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants