phantinuss
f04419c730
Merge PR #4470 From phantinuss - Fix FPs Found In Testing
...
fix: Generic Password Dumper Activity on LSASS - FP with GoogleUpdate.exe
fix: Rundll32 Execution Without DLL File - FP with another zzzzInvokeManagedCustomActionOutOfProc MSI installer
fix: Suspicious Shim Database Installation via Sdbinst.EXE - FP with being started as a background service
fix: Potential CVE-2023-36874 Exploitation - Fake Wermgr.Exe Creation - FP with $WinREAgent folder
fix: Files With System Process Name In Unsuspected Locations - FP with wuaucltcore
---------
Co-authored-by: Nasreddine Bencherchali <8741929+nasbench@users.noreply.github.com >
2023-10-09 00:07:56 +02:00
..
2023-08-28 16:53:27 +02:00
2022-10-14 08:53:50 +02:00
2022-10-14 08:53:50 +02:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2023-02-07 14:33:56 +01:00
2023-02-07 14:33:56 +01:00
2022-10-14 08:53:50 +02:00
2022-12-27 12:29:10 +01:00
2022-12-27 12:29:10 +01:00
2023-08-28 16:53:27 +02:00
2023-08-28 16:53:27 +02:00
2023-02-01 11:14:59 +01:00
2023-06-26 10:10:04 +01:00
2023-06-26 10:10:04 +01:00
2023-06-26 10:10:04 +01:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2023-02-07 14:33:56 +01:00
2023-02-01 11:14:59 +01:00
2023-06-21 09:52:43 +02:00
2023-08-28 16:53:27 +02:00
2023-07-13 10:01:05 +02:00
2023-07-13 10:01:05 +02:00
2022-12-20 23:44:44 +01:00
2023-02-07 14:33:56 +01:00
2023-03-15 12:00:20 +01:00
2022-12-27 12:29:10 +01:00
2023-06-21 09:52:43 +02:00
2022-10-25 11:08:51 +02:00
2023-05-02 23:17:57 +02:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2023-02-27 13:04:39 +01:00
2022-11-28 06:43:17 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2022-12-27 21:05:16 +01:00
2023-06-22 09:52:25 -04:00
2023-03-14 23:58:04 +01:00
2023-02-07 14:33:56 +01:00
2023-08-07 16:09:21 +02:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2022-10-14 08:53:50 +02:00
2022-10-25 11:08:51 +02:00
2022-11-30 11:44:15 +01:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2022-11-22 18:13:34 +05:00
2022-10-25 11:08:51 +02:00
2023-05-18 23:29:02 +02:00
2023-04-14 16:55:41 +02:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2022-12-27 21:05:16 +01:00
2022-11-30 11:44:15 +01:00
2023-02-07 14:33:56 +01:00
2022-10-14 08:53:50 +02:00
2022-10-14 08:53:50 +02:00
2023-09-29 13:56:49 +02:00
2023-02-07 14:33:56 +01:00
2023-08-28 16:53:27 +02:00
2023-02-07 14:33:56 +01:00
2023-06-14 00:23:28 +02:00
2023-02-07 14:33:56 +01:00
2023-02-07 14:33:56 +01:00
2023-06-22 01:15:04 +02:00
2023-01-04 18:52:24 +01:00
2023-06-26 10:10:04 +01:00
2022-10-14 08:53:50 +02:00
2022-10-14 08:53:50 +02:00
2022-12-07 22:34:56 +01:00
2023-01-04 18:52:24 +01:00
2022-10-14 08:53:50 +02:00
2023-02-01 11:14:59 +01:00
2023-02-01 11:14:59 +01:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2022-10-14 08:53:50 +02:00
2022-10-14 08:53:50 +02:00
2023-10-09 00:07:56 +02:00
2022-10-14 08:53:50 +02:00
2023-02-01 11:14:59 +01:00
2023-08-28 16:53:27 +02:00
2023-08-28 16:53:27 +02:00
2023-08-28 16:53:27 +02:00
2023-02-02 19:40:01 +01:00
2023-02-01 11:14:59 +01:00
2022-10-25 11:08:51 +02:00
2022-12-27 21:05:16 +01:00
2023-02-01 11:14:59 +01:00
2023-02-01 11:14:59 +01:00
2023-03-14 23:58:04 +01:00
2023-02-07 13:55:14 +01:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2022-10-25 11:08:51 +02:00
2023-02-07 14:33:56 +01:00
2022-10-25 11:08:51 +02:00
2022-11-30 11:44:15 +01:00
2022-10-25 11:08:51 +02:00
2023-02-27 13:04:39 +01:00
2023-02-27 13:04:39 +01:00
2023-02-27 13:04:39 +01:00
2023-06-21 09:52:43 +02:00
2023-02-27 13:04:39 +01:00
2022-10-25 11:08:51 +02:00
2023-02-27 13:04:39 +01:00
2023-02-01 11:14:59 +01:00
2023-02-27 13:04:39 +01:00
2022-12-23 09:25:16 +01:00