diff --git a/decoders/0380-windows_decoders.xml b/decoders/0380-windows_decoders.xml index 895b1b3bc..0cd1980a3 100644 --- a/decoders/0380-windows_decoders.xml +++ b/decoders/0380-windows_decoders.xml @@ -91,7 +91,7 @@ web-log true ^\S+ GET |^\S+ POST - ^\S+ (\w+) (\S+ \S+) (\S+) \S+ (\S+) (\S+) \.*(\d\d\d) + ^\S+ (\w+) (\S+ \S+) (\S+) \S+ (\S+) (\S+) \S+ (\d\d\d) |^\S+ (\w+) (\S+ \S+) (\S+) \S+ (\S+) (\S+) \.*(\d\d\d) action, url, srcport, srcip, user_agent, id