<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Malicious signature &amp;quot;Virus/Win32.WGeneric.bjpxbe&amp;quot; detected on Cortex XDR in Advanced Threat Prevention Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/malicious-signature-quot-virus-win32-wgeneric-bjpxbe-quot/m-p/433183#M1312</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Malicious signature "&lt;SPAN&gt;Virus/&lt;/SPAN&gt;Win32.WGeneric.bjpxbe" is detected on Cortex XDR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When dwelled further, details &amp;amp; screen grab from THREAT VAULT are shared for your perusal&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Unique Threat ID: 422569341&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;SHA256 values are (&lt;/SPAN&gt;09fb42aa3d9fcb32e2dab5f9e614a1975eac3324647becbb2f703505048c7aaf&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;and&amp;nbsp;c42276b3b59e61e55fdee93223708f0a12bff9d9ebabd640425cbbf5f329ed14&lt;SPAN&gt;) as shown in the screen grab.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FarooqHussain_0-1631297224416.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/36322i31ADADBCB2BD2077/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="FarooqHussain_0-1631297224416.png" alt="FarooqHussain_0-1631297224416.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I have explored on virustotal.com &amp;amp;&amp;nbsp;exchange.xforce.ibmcloud.com and "found no matches" &amp;amp; "unknown risk" respectively.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please suggest if these&lt;SPAN&gt;&amp;nbsp;signatures are built based on WildFire false positives? What could be the impact of this virus &amp;amp; what should be next plan of action. Please suggest.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thank you&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 10 Sep 2021 18:28:07 GMT</pubDate>
    <dc:creator>Farooq_Hussain</dc:creator>
    <dc:date>2021-09-10T18:28:07Z</dc:date>
    <item>
      <title>Malicious signature "Virus/Win32.WGeneric.bjpxbe" detected on Cortex XDR</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/malicious-signature-quot-virus-win32-wgeneric-bjpxbe-quot/m-p/433183#M1312</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Malicious signature "&lt;SPAN&gt;Virus/&lt;/SPAN&gt;Win32.WGeneric.bjpxbe" is detected on Cortex XDR.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;When dwelled further, details &amp;amp; screen grab from THREAT VAULT are shared for your perusal&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Unique Threat ID: 422569341&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;SHA256 values are (&lt;/SPAN&gt;09fb42aa3d9fcb32e2dab5f9e614a1975eac3324647becbb2f703505048c7aaf&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;and&amp;nbsp;c42276b3b59e61e55fdee93223708f0a12bff9d9ebabd640425cbbf5f329ed14&lt;SPAN&gt;) as shown in the screen grab.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="FarooqHussain_0-1631297224416.png" style="width: 999px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/36322i31ADADBCB2BD2077/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="FarooqHussain_0-1631297224416.png" alt="FarooqHussain_0-1631297224416.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;I have explored on virustotal.com &amp;amp;&amp;nbsp;exchange.xforce.ibmcloud.com and "found no matches" &amp;amp; "unknown risk" respectively.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Please suggest if these&lt;SPAN&gt;&amp;nbsp;signatures are built based on WildFire false positives? What could be the impact of this virus &amp;amp; what should be next plan of action. Please suggest.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Thank you&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 10 Sep 2021 18:28:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/malicious-signature-quot-virus-win32-wgeneric-bjpxbe-quot/m-p/433183#M1312</guid>
      <dc:creator>Farooq_Hussain</dc:creator>
      <dc:date>2021-09-10T18:28:07Z</dc:date>
    </item>
  </channel>
</rss>

