Jump to content

hazelnut

Moderators
  • Posts

    20,096
  • Joined

  • Last visited

Posts posted by hazelnut

  1. @lmacri

    In the link I posted above this is what Palo Alto uses it for

    Quote

    Answer
    "wa_3rd_party_host_32.exe" and "wa_3rd_party_host_64.exe" are OPSWAT binaries used by Global Protect to perform posture assessment.
    Global-protect works with Opswat (the engine that Global-protect uses to collect and patch HIP data) to get information regarding various 3rd party software. Once the client connects to the gateway, the Global-protect client generates a HIP-report from the client.
    wa_3rd_ processes in GP is only to collect information, it will not do a patch update. It checks the windows server with current patch so that policy can be enforced.

    And more info here

    https://live.paloaltonetworks.com/t5/general-topics/use-of-binaries-in-global-protect/td-p/430692

    and this very interesting read.

    https://www.file.net/process/wa_3rd_party_host_32.exe.html

     

     

  2. 21 minutes ago, dbaker1 said:

    Ccleaner used to force it closed

    say it was taking too long   , say do you want to force it to close

    Ccleaner stopped doing that

    I going to find something that does

    Did you read my link at all?

  3. 4 hours ago, Larry42 said:

    Thanks Hazelnut. That's exactly what I've been doing, but it's a pain in the arse that seems like it should be unnecessary. Question, why do you think that Microsoft might think they have something to sort out? I would assume they're oblivious to this.

     

    Because too many people are reporting across different forums that Edge keeps running even when it shouldn't be.

    Also read this thread.

    https://community.ccleaner.com/topic/65724-edge-browser-not-close-these-days

     

  4. This attack happened in May but info is appearing about it now. Have a read of the article and you will see that ccleaner was just one of many attacked by MOVEit.

    Quote

    The State of Maine has announced that its systems were breached after threat actors exploited a vulnerability in the MOVEit file transfer tool and accessed personal information of about 1.3 million, which is close to the state's entire population.

    https://www.bleepingcomputer.com/news/security/maine-govt-notifies-13-million-people-of-moveit-data-breach/

  5. On 05/11/2023 at 15:06, Dan Bee said:

     Windows is now dynamically and unpredictably shifting the location of data across the disk platter, making it unreliable to pinpoint where the free space actually is. Due to this change in Windows, Microsoft warns that there is no safe method for wiping just free space.'

     

    Can you post a link to this Microsoft warning please.

×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.