Resolved! xql query for file \ folder name.
How can I locate a particular file or folder across all endpoints?
file or folder name : bihmplhobchoageeokmgbdihknkjbknd
Thanks community
Cortex XDR
Cortex XDR allows you to rapidly detect and respond to threats across your networks, endpoints, and clouds. It assists SOC analysts by allowing them to view ALL the alerts from all PANW products in one place, telling the full story of what actually happened in seconds and allows seamless response.
Please note: All postings in LIVEcommunity are visible to other users; please keep your network secure by refraining from posting live IP address’s or domain names here. Contact your Customer Success team for network-specific questions.
How can I locate a particular file or folder across all endpoints?
file or folder name : bihmplhobchoageeokmgbdihknkjbknd
Thanks community
Cortex XDR
Hi All
We have recently changed the region of our XDR tenant and we have migrated all of our Agents. now the issue is most of our agents were configured using cytool/CMD and support team configured the Broker VM IP manually.
As the broker VM IP ne
...
All the CVEs that appear on the platform Cortex XDR date back to 2017, when I see the vulnerability assessment section, none of the CVEs are from years prior to 2017. Could you give me an answer as to why this is so?
Hello team,
Does Cortex XDR BIOC analytics alerts get blocked after setting Global Behavioral Threat Protection to block ? or how Cortex XDR decide to block/detect the behavioral threat alert?
Cortex XDR
Hello everyone,
I am trying to create some XQL queries to create some dashboards but without success. I wanted to know if you could help me, the questions would be the following:
1. that the different operating systems are shown, but that it shows
...
Dear Support Team,
I am writing to request assistance with configuring a policy within in my version of Cortex XDR Pro.
As part of the migration process, I need to restrict access to Google Docs and Gmail, TeamViewer and others to ensure the blocking
...
Hello,
We are looking to add the XDR agent to our on-prem Exchange and Sharepoint servers, and I had two questions about the scanning capabilities of the agent on these servers.
Hello,
I intend to formulate a new query to retrieve the computer's uptime, and if the system has been active for more than 30 days, generate an alert. Although I attempted the following XQL Search, the outcome yielded no results:
config case_s...
Hi team,
It feels like I'm missing something and so would appreciate of someone could explain to me why the XDR agent on Windows (latest 8.2.1 with block policy) is not reacting to EICAR malware test file (X5O!P%@AP[4PZX54(P^)7CC)7}$EICAR-STANDARD-
...
I have access to an instance of "Strata Logging Service".
My tenancy to Strat Logging service is ending by: Jan 25th.
Need help in renewing the tenancy .
Thanks,
Debabani
Hello guys, this is my first post, I'm glad I can be part of this community, I tried to make a query to see what extensions are installed in Firefox. I hope it is ok and useful and if you have something to add to improve it, I would be very happy.
...
Hello,
i would like to know if there is a way to block access to microsoft store through Cortex XDR , i know there are many way to reach this goal such as GPO. but i would like to use Cortex XDR . because it will be harder to manage (remote) out of
...
I am attempting to change managing server option for an endpoint, however the option is unavailable when I go to endpoint control.
See image below:
I do have endpoint administrator privileges in Cortex XDR Management UI as shown below:
The
...
Dears,
In some cases Endpoint is going to Partial protected due to some issues. I have read this knowledge base. (https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA14u0000004OGWCA2&lang=en_US%E2%80%A9)
Now I want to know that How can
...
Hello.
I've try to obtain a list of all users that use USB device in his computers.
All corporate computer have XDR installed, any query suggestion?
Regards.
Rodrigo
Subject | Likes |
---|---|
2 Likes | |
2 Likes | |
2 Likes | |
1 Like | |
1 Like |