Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

CB ThreatHunter: Processes only show child procs in both the investigate and process analysis pages. Netconns, regmods and filemods are missing.

CB ThreatHunter: Processes only show child procs in both the investigate and process analysis pages. Netconns, regmods and filemods are missing.

Environment

  • Enterprise EDR sensors: All versions prior to 3.4.3.44 
  • Enterprise EDR console: All versions

Symptoms

  1. Investigate page is missing netconns, regmods and filemods of a few processes
  2. Process analysis page is missing netconns, regmods and filemods of a few processes
  3. The effected processes are reported in the process search page with this query:    legacy:true

Cause

This is issue DSEN-8293.

Resolution

DSEN-8293 is fixed in the 3.4.3.44 sensor and after.
 

Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎08-20-2020
Views:
294
Contributors