This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Anyone seeing wsus content being detect as a mal/generic-l virus?

Five files were detected after a full scan today.  I have the latest virus definitions and the 9.7 client.  D:\WSUS\WsusContent\19\61640FF41A27B72A35669DD1E3698896ED089019.exe and four other files were detected.  I'm hoping it's a false positive.

:18771


This thread was automatically locked due to age.
Parents
  • Hi all,

    I can confirm I have also seen this, yesterday and today, on two separate, isolated WSUS servers.

    Sophos, please confirm what the Generic-L detection specifically looks for.

    I am trying to gather a sample, and use an online sandbox to tell me what the suspected item actually does. However I;'d appreciate it if our vendor told us what was going on.

    Sorry to be pessomistic in advance, Sophos, but I've never had any information or feedback from you following the submission of samples - such as specific additions, deletions or alterations which would allow us to independently verify the health fo systems following an infection.

    I do hope this occasion sees a change in that approach.

    Kind regards,

    :18809
Reply
  • Hi all,

    I can confirm I have also seen this, yesterday and today, on two separate, isolated WSUS servers.

    Sophos, please confirm what the Generic-L detection specifically looks for.

    I am trying to gather a sample, and use an online sandbox to tell me what the suspected item actually does. However I;'d appreciate it if our vendor told us what was going on.

    Sorry to be pessomistic in advance, Sophos, but I've never had any information or feedback from you following the submission of samples - such as specific additions, deletions or alterations which would allow us to independently verify the health fo systems following an infection.

    I do hope this occasion sees a change in that approach.

    Kind regards,

    :18809
Children
No Data