diff --git a/mappings/sigma-mft-logs-all.yml b/mappings/sigma-mft-logs-all.yml deleted file mode 100644 index b34d3231..00000000 --- a/mappings/sigma-mft-logs-all.yml +++ /dev/null @@ -1,13 +0,0 @@ ---- -name: Chainsaw's groupless Sigma mappings for Master File Tables -kind: mft -rules: sigma - -# TODO: Flesh this out... but sigma does not seem geared for this? -groups: - - name: Sigma - timestamp: FileNameCreated - fields: - - name: Full Path - from: FullPath - to: FileName