Merge pull request #906 from GelosSnake/patch-1
adding google chrome to FP list
This commit is contained in:
@@ -32,6 +32,7 @@ detection:
|
||||
- '*\procexp.exe'
|
||||
- '*\procmon64.exe'
|
||||
- '*\procmon.exe'
|
||||
- '*\Google\Chrome\Application\chrome.exe'
|
||||
condition: selection_1 and not selection_2
|
||||
falsepositives:
|
||||
- Other legimate tools loading drivers. There are some: Sysinternals, CPU-Z, AVs etc. - but not much. You have to baseline this according to your used products and allowed tools. Also try to exclude users, which are allowed to load drivers.
|
||||
|
||||
Reference in New Issue
Block a user