Merge pull request #906 from GelosSnake/patch-1

adding google chrome to FP list
This commit is contained in:
Florian Roth
2020-07-08 16:57:29 +02:00
committed by GitHub
@@ -32,6 +32,7 @@ detection:
- '*\procexp.exe'
- '*\procmon64.exe'
- '*\procmon.exe'
- '*\Google\Chrome\Application\chrome.exe'
condition: selection_1 and not selection_2
falsepositives:
- Other legimate tools loading drivers. There are some: Sysinternals, CPU-Z, AVs etc. - but not much. You have to baseline this according to your used products and allowed tools. Also try to exclude users, which are allowed to load drivers.