From a7ee2ffbde99ae6df24196ffe6cb1b85e60bb22d Mon Sep 17 00:00:00 2001 From: Victor Julien Date: Mon, 2 Dec 2019 20:57:59 +0100 Subject: [PATCH] smb: winreg is a DCERPC facility --- rust/src/smb/smb.rs | 1 + 1 file changed, 1 insertion(+) diff --git a/rust/src/smb/smb.rs b/rust/src/smb/smb.rs index ca9e357dbc..b381052224 100644 --- a/rust/src/smb/smb.rs +++ b/rust/src/smb/smb.rs @@ -1128,6 +1128,7 @@ impl SMBState { Ok("lsarpc") => ("lsarpc", true), Ok("samr") => ("samr", true), Ok("spoolss") => ("spoolss", true), + Ok("winreg") => ("winreg", true), Ok("suricata::dcerpc") => ("unknown", true), Err(_) => ("MALFORMED", false), Ok(&_) => { -- 2.47.2