e9785a5c-1caf-4577-85fa-9a2eadc9bfe9

e9785a5c-1caf-4577-85fa-9a2eadc9bfe9 :inline

This was provided by SUSE Linux and revoked Jul-20

  • UUID: e9785a5c-1caf-4577-85fa-9a2eadc9bfe9
  • Created: 2023-05-22
  • Author: Michael Haag
  • Acknowledgement: |

Download

This download link contains the Revoked Bootloader!

          1
          bcdedit /copy "{current}" /d "TheBoots" | {% if ($_ -match '{\S+}') { bcdedit /set $matches[0] path \windows\temp\ } }
        
not set
Use CasePrivilegesOperating System
Persistence64-bit
Expand

Exact Match

with header and size limitation

Threat Hunting

without header and size limitation

Renamed

for renamed bootloader files
Expand

Names

detects loading using name only

Hashes

detects loading using hashes only
Expand

Block

on hashes

Alert

on hashes

  • https://uefi.org/revocationlistfile
  • https://support.microsoft.com/en-gb/topic/microsoft-guidance-for-applying-secure-boot-dbx-update-kb4575994-e3b9e4cb-a330-b3ba-a602-15083965d9ca

  • CVE-2020-10713
  • CVE-2020-14308
  • CVE-2020-14309
  • CVE-2020-14310
  • CVE-2020-14311
  • CVE-2020-15705
  • CVE-2020-15706
  • CVE-2020-15707
  • PropertyValue
    Filename
    MD5
    SHA1
    SHA256D389EDE1F84051086D30B8C2CFC362797B129854DF1313CA474F83A143F55D11
    Authentihash MD5
    Authentihash SHA1
    Authentihash SHA256788383A4C733BB87D2BF51673DC73E92DF15AB7D51DC715627AE77686D8D23BC
    Expand
    Expand
    Expand
    Expand
    Expand

    source

    last_updated: 2023-08-31