<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Dynatrace_onepCap detected as malicious in Open Q&amp;A</title>
    <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-onepCap-detected-as-malicious/m-p/199869#M23528</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/9193"&gt;@echwallah&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;Could you share with us what tool was used to detect the file as malicious? This would help us a lot.&lt;BR /&gt;&lt;BR /&gt;We had a similar support case, but we got a reply from NPCAP developers, that this was a false positive.&lt;/P&gt;</description>
    <pubDate>Tue, 06 Dec 2022 10:42:57 GMT</pubDate>
    <dc:creator>MaciejNeumann</dc:creator>
    <dc:date>2022-12-06T10:42:57Z</dc:date>
    <item>
      <title>Dynatrace_onepCap detected as malicious</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-onepCap-detected-as-malicious/m-p/199735#M23503</link>
      <description>&lt;P&gt;One of our customers has flagged an executable file known as Dynatrace-onepcap.exe and it is signed by Dynatrace.&lt;/P&gt;
&lt;P&gt;The security tool has flagged and associated it to Dynatrace under folder c:\program files\dynatrace\oneagent\agent\pcap\dynatrace_onepcap.exe quoting "potentially malicious"&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="pcap (1).PNG" style="width: 999px;"&gt;&lt;img src="https://community.dynatrace.com/t5/image/serverpage/image-id/8871i0DA79E53812DC50C/image-size/large?v=v2&amp;amp;px=999" role="button" title="pcap (1).PNG" alt="pcap (1).PNG" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt; &lt;/P&gt;
&lt;P&gt;Has anyone come across this and is it the same npcap/winpcap Packet Monitoring driver or is this a different executable?&lt;/P&gt;
&lt;P&gt;Please let me know in order to clarify to the client.&lt;/P&gt;</description>
      <pubDate>Wed, 07 Dec 2022 15:31:07 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-onepCap-detected-as-malicious/m-p/199735#M23503</guid>
      <dc:creator>echwallah</dc:creator>
      <dc:date>2022-12-07T15:31:07Z</dc:date>
    </item>
    <item>
      <title>Re: Dynatrace_onepCap detected as malicious</title>
      <link>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-onepCap-detected-as-malicious/m-p/199869#M23528</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.dynatrace.com/t5/user/viewprofilepage/user-id/9193"&gt;@echwallah&lt;/a&gt;,&lt;BR /&gt;&lt;BR /&gt;Could you share with us what tool was used to detect the file as malicious? This would help us a lot.&lt;BR /&gt;&lt;BR /&gt;We had a similar support case, but we got a reply from NPCAP developers, that this was a false positive.&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 10:42:57 GMT</pubDate>
      <guid>https://community.dynatrace.com/t5/Open-Q-A/Dynatrace-onepCap-detected-as-malicious/m-p/199869#M23528</guid>
      <dc:creator>MaciejNeumann</dc:creator>
      <dc:date>2022-12-06T10:42:57Z</dc:date>
    </item>
  </channel>
</rss>

