local_rules.xml 480 B

123456789101112
  1. <!-- Custom Rules XML file for Wazuh -->
  2. <!-- (Optional) Fix false-positive reports in Wazuh ClamAV
  3. <group name="clamd,freshclam,">
  4. <rule id="52502" level="8" overwrite="yes">
  5. <if_sid>52500</if_sid>
  6. <match>FOUND$</match>
  7. <description>ClamAV: Virus detected</description>
  8. <group>virus,pci_dss_5.1,pci_dss_5.2,pci_dss_11.4,gpg13_4.2,gdpr_IV_35.7.d,nist_800_53_SI.3,nist_800_53_SI.4,tsc_A1.2,tsc_CC6.1,tsc_CC6.8,tsc_CC7.2,tsc_CC7.3,</group>
  9. </rule>
  10. </group>
  11. -->