From 5cb979cd9370d768bf9d7eee05fc68d6be38987b Mon Sep 17 00:00:00 2001 From: Michael Hart Date: Mon, 12 Jul 2021 10:32:36 -0400 Subject: [PATCH] Grammar fix --- lookups/prohibited_processes.csv | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/lookups/prohibited_processes.csv b/lookups/prohibited_processes.csv index 1be163206e..7ee5b19aa6 100644 --- a/lookups/prohibited_processes.csv +++ b/lookups/prohibited_processes.csv @@ -18,4 +18,4 @@ OutlookAddressBookView.exe,ESCU - This process was identified as malicious by DH mailpv.exe,ESCU - This process was identified by DHS Alert TA18-201A and attackers use this tool is a password-recovery tool that reveals the passwords and other account details from various email clients. NLBrute.exe,ESCU - This process was identified in the SamSam Ransomware Campaign and attackers use this tool to brute force RDP instances with a range of commonly used passwords. selfdel.exe,ESCU - This executable was delivered in the SamSam Ransomware Campain and the attackers levereged this binary to delete its malicilous activities. -SilverBullet.exe, ESCU - This executable was discovered in our monitoring of honey pots that abuses an open source software for scanning and connecting to hosts all over the entire Internet. +SilverBullet.exe, ESCU - Malware was discovered in our monitoring of honey pots that abuses this open source software for scanning and connecting to hosts.