diff --git a/definitions/Windows_SearchService.yaml b/definitions/Windows_SearchService.yaml index 6d14c3f..1920b8f 100644 --- a/definitions/Windows_SearchService.yaml +++ b/definitions/Windows_SearchService.yaml @@ -7,9 +7,9 @@ Description: | Categories: - Windows -FilenameRegex: "Windows.edb" +FilenameRegex: "Windows..db" Globs: - - C:\ProgramData\Microsoft\Search\Data\Applications\Windows\Windows.edb + - "C:\\ProgramData\\Microsoft\\Search\\Data\\Applications\\Windows\\Windows.*db" Sources: - name: SystemIndex_Gthr