We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
When analyzing various benign URLS in IE on Windows 7:
The following high severity signatures fired, which raised the MalScore to malicious levels:
Ideally, the MalScore should be in the benign range.
The text was updated successfully, but these errors were encountered:
Perhaps this could be resolved by updating the signatures with an exclusion list of process names or similar to get it to ignore IE?
Sorry, something went wrong.
Can the signatures get the full path of the process instead of the process name? That would be safer.
That could also solve the PDF false positive.
No branches or pull requests
When analyzing various benign URLS in IE on Windows 7:
The following high severity signatures fired, which raised the MalScore to malicious levels:
regkeyval: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage2\ProgramsCache
process: explorer.exe:1288
Ideally, the MalScore should be in the benign range.
The text was updated successfully, but these errors were encountered: