Threat Report: Exposing Malware in Linux-Based Multi-Cloud Environments | Download Now

EDR: How does the sensor determine what is the host_type of a device

EDR: How does the sensor determine what is the host_type of a device

Environment

  • EDR sensor: All supported versions
  • Windows: All supported OS

Question

How does the sensor determine what is the host_type of a device?

Answer

The "host_type" is collected from the structure under wProductType under OSVERSIONINFOEXA structure, more details can be found here:
OSVERSIONINFOEXA (winnt.h) - Win32 apps

Related Content


Labels (1)
Tags (2)
Was this article helpful? Yes No
No ratings
Article Information
Author:
Creation Date:
‎10-14-2022
Views:
201
Contributors