Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Difference between ML\PE and MAL\PE?

Hi,

In our clients environments, they get two types of alerts in Central dashboard, one with MAL\PE and ML\PE. As per my understanding, MAL\PE is a definite malware infected file and ML\PE is a potentially malicious file detected by deep learning with possibility of false positive. Is this correct ? Can MAL\PE also have false positives or is the file surely infected as it has matched with a signature.



This thread was automatically locked due to age.
Parents Reply Children
No Data