Swachchhanda Shrawan Poudel
f7f61a9f95
Merge PR #5789 from @swachchhanda000 - Add fps filter observed on ARM-based Windows updates
...
fix: Uncommon AppX Package Locations - filter out system32
fix: Unauthorized System Time Modification - filter out vmwaretools
fix: Files With System Process Name In Unsuspected Locations - filter windows temp
fix: Startup Folder File Write - filter out wuauclt.exe and C:$WinREAgent\Scratch\Mount\ directory
fix: Potentially Suspicious WDAC Policy File Creation - filter wuaucltcore.exe
fix: Creation of WerFault.exe/Wer.dll in Unusual Folder - filter C:\Windows\UUS\arm64\
fix: Potentially Suspicious Volume Shadow Copy Vsstrace.dll Load - filter C:$WinREAgent\Scratch\
fix: Potential System DLL Sideloading From Non System Locations - filter legitimate ARM based locations
fix: Potential Defense Evasion Via Raw Disk Access By Uncommon Tools - filter legitimate ARM based locations
---------
Co-authored-by: Nasreddine Bencherchali <nasbench@users.noreply.github.com >
2025-12-09 08:29:51 +05:45
..
2025-02-22 23:57:41 +01:00
2024-08-12 12:02:50 +02:00
2025-10-09 13:03:39 +02:00
2025-10-23 15:43:47 +02:00
2024-08-12 12:02:50 +02:00
2025-12-09 08:15:03 +05:45
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-10-01 14:56:09 +02:00
2025-12-09 08:21:14 +05:45
2024-08-12 12:02:50 +02:00
2025-10-09 13:03:39 +02:00
2024-08-12 12:02:50 +02:00
2025-11-25 17:48:05 +05:45
2025-07-14 12:04:39 +02:00
2025-10-17 07:57:13 +05:45
2025-12-09 08:29:51 +05:45
2024-11-25 09:30:14 +01:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2024-08-12 12:02:50 +02:00
2025-05-15 12:17:10 +02:00
2024-08-12 12:02:50 +02:00
2025-10-09 13:03:39 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2024-12-01 13:40:32 +01:00
2025-10-09 13:03:39 +02:00
2025-10-09 13:03:39 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-12-09 08:29:51 +05:45
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-09 13:03:39 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-05-15 12:17:10 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-10-18 07:07:22 +05:45
2025-10-23 15:43:47 +02:00
2024-08-12 12:02:50 +02:00
2025-10-01 11:46:41 +02:00
2025-10-23 15:43:47 +02:00
2025-10-09 13:03:39 +02:00
2025-10-23 15:43:47 +02:00
2024-08-12 12:02:50 +02:00
2025-05-15 12:17:10 +02:00
2025-10-01 14:16:23 +02:00
2025-10-23 15:43:47 +02:00
2025-10-23 15:43:47 +02:00
2025-12-09 08:29:51 +05:45
2024-08-12 12:02:50 +02:00
2025-10-17 07:57:13 +05:45