Skip to content

Commit 08e3f17

Browse files
authored
Update enum_av.py
Added signature for Cortex Signed-off-by: n00py <esteban.m.rodriguez@gmail.com>
1 parent e4ca4f9 commit 08e3f17

1 file changed

Lines changed: 5 additions & 0 deletions

File tree

nxc/modules/enum_av.py

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -247,6 +247,11 @@ def LsarLookupNames(self, dce, policyHandle, service):
247247
"services": [{"name": "CSFalconService", "description": "CrowdStrike Falcon Sensor Service"}],
248248
"pipes": [{"name": "CrowdStrike\\{*", "processes": ["CSFalconContainer.exe", "CSFalconService.exe"]}]
249249
},
250+
{
251+
"name": "Cortex",
252+
"services": [{"name": "xdrhealth", "description": "Cortex XDR Health Helper"}],
253+
"services": [{"name": "cyserver", "description": " Cortex XDR"}],
254+
},
250255
{
251256
"name": "Cybereason",
252257
"services": [

0 commit comments

Comments
 (0)