Lowered severity of rule - prone to false positives
This commit is contained in:
@@ -15,5 +15,5 @@ detection:
|
||||
Image: '*\FLTLDR.exe*'
|
||||
condition: selection
|
||||
falsepositives:
|
||||
- Unknown
|
||||
level: critical
|
||||
- Several false positives identified, check for suspicious file names or locations (e.g. Temp folders)
|
||||
level: medium
|
||||
|
||||
Reference in New Issue
Block a user