fbf92874-0ee4-4c8e-9dc5-ab73b6bb4010

centos-8.3-shim-20200726-shimia32.efi :inline

This was provided by Red Hat, Inc. and revoked Apr-21

  • UUID: fbf92874-0ee4-4c8e-9dc5-ab73b6bb4010
  • Created: 2023-05-22
  • Author: Michael Haag
  • Acknowledgement: |

Download

This download link contains the Revoked Bootloader!

          1
          bcdedit /copy "{current}" /d "TheBoots" | {% if ($_ -match '{\S+}') { bcdedit /set $matches[0] path \windows\temp\centos-8.3-shim-20200726-shimia32.efi } }
        
not set
Use CasePrivilegesOperating System
Persistence32-bit
Expand

Exact Match

with header and size limitation

Threat Hunting

without header and size limitation

Renamed

for renamed bootloader files
Expand

Names

detects loading using name only

Hashes

detects loading using hashes only
Expand

Block

on hashes

Alert

on hashes

  • https://uefi.org/revocationlistfile
  • https://support.microsoft.com/en-gb/topic/microsoft-guidance-for-applying-secure-boot-dbx-update-kb4575994-e3b9e4cb-a330-b3ba-a602-15083965d9ca

  • CVE-2020-14372
  • CVE-2020-25632
  • CVE-2020-25647
  • CVE-2020-27749
  • CVE-2020-27779
  • CVE-2021-3418
  • CVE-2021-20225
  • CVE-2021-20233
  • PropertyValue
    Filenamecentos-8.3-shim-20200726-shimia32.efi
    MD5
    SHA1
    SHA2561A9DDD9AF383AD81787CD7C6A6DC8C8AA86CD995157C32AD476B60D2C494F7FA
    Authentihash MD5
    Authentihash SHA1
    Authentihash SHA25606C670F8572BF89ABAE13D14D81FFE80D5550F696862B1AB386E4D8C56B02016
    Expand
    Expand
    Expand
    Expand
    Expand

    source

    last_updated: 2023-08-31