<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Threat ID 52019 in Advanced Threat Prevention Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449158#M1388</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Im Trying to get some information on "Threat ID 52019", as i found only 1 document referencing it in the&amp;nbsp;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClEtCAK" target="_self"&gt;Palo Alto Knowledge Base&lt;/A&gt;&amp;nbsp;. The information provided does not describe it. Is there a way to get more information on this? FYI, I don't have access to threat vault.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 24 Nov 2021 00:53:57 GMT</pubDate>
    <dc:creator>ppradhan</dc:creator>
    <dc:date>2021-11-24T00:53:57Z</dc:date>
    <item>
      <title>Threat ID 52019</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449158#M1388</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Im Trying to get some information on "Threat ID 52019", as i found only 1 document referencing it in the&amp;nbsp;&lt;A href="https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClEtCAK" target="_self"&gt;Palo Alto Knowledge Base&lt;/A&gt;&amp;nbsp;. The information provided does not describe it. Is there a way to get more information on this? FYI, I don't have access to threat vault.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 24 Nov 2021 00:53:57 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449158#M1388</guid>
      <dc:creator>ppradhan</dc:creator>
      <dc:date>2021-11-24T00:53:57Z</dc:date>
    </item>
    <item>
      <title>Re: Threat ID 52019</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449161#M1389</link>
      <description>&lt;P&gt;As you found it in the KB, ID: 52019 is a file type signature which detects "Windows Dynamic Link Library (DLL)". If you see it in the WildFire submission log, I'd suggest to check the WildFire report for more detail or get the hash value of the sample to research further.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Nov 2021 01:04:19 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449161#M1389</guid>
      <dc:creator>ymiyashita</dc:creator>
      <dc:date>2021-11-24T01:04:19Z</dc:date>
    </item>
    <item>
      <title>Re: Threat ID 52019</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449166#M1390</link>
      <description>&lt;P&gt;Thanks&amp;nbsp;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/8083"&gt;@ymiyashita&lt;/a&gt;. I do not have access to Wildfire reports as well, but there is a WildFire report ID that is in the raw logs. The reason I wanted to know more about this thread ID is that it was detected as a "high" severity detection and labelled as malicious, but the file hash itself has no detections on VirusTotal/X-Force.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Nov 2021 01:29:59 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449166#M1390</guid>
      <dc:creator>ppradhan</dc:creator>
      <dc:date>2021-11-24T01:29:59Z</dc:date>
    </item>
    <item>
      <title>Re: Threat ID 52019</title>
      <link>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449268#M1394</link>
      <description>&lt;P&gt;Please open a Support case.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Nov 2021 16:31:08 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/advanced-threat-prevention/threat-id-52019/m-p/449268#M1394</guid>
      <dc:creator>mivaldi</dc:creator>
      <dc:date>2021-11-24T16:31:08Z</dc:date>
    </item>
  </channel>
</rss>

