Sandbox false positive .NET 6.0.11 Update
It seems, that the sandbox has a false positive on the windows update for the .net application.
URL: au.download.windowsupdate.com/c/msdownload/update/software/crup/2022/10/windowsdesktop-runtime-6.0.11-win-x64_b9e3ab8e3048170d9e3eabf6761d423eb4c93c6d.exe
Hash value: 5cd9064d70607bd1cb8b6eb6405360f9
Is there no way to whitelist certain files or URL's?
Kind regards,
Michael
0
Accepted Solution
-
Hi @Dexta,We change the hash value "5cd9064d70607bd1cb8b6eb6405360f9" to "Clean" category. The file will not be detected as suspicious. Remember to reboot the device to clean device's local cache of Anti-Malware and Sandboxing. Then monitor the Sandboxing logs and see if the issue is resolved.
Click this link to start: https://bit.ly/3R2Wx52
Emily0
All Replies
-
Hi @Dexta,Is the file deteted as malicious or suspicious file? Please go to MONITOR > Security Statistics > Sandboxing > Summary and capture the screen shot of "Statistics" for us.

Click this link to start: https://bit.ly/3R2Wx52
Emily0 -
Hi,it's marked as suspicious. Attached you find to picuters. I couldn't find the path you wrote. Propably because we are using nebula.Let me know if you need something else.

0
Categories
- All Categories
- 164 Beta Program
- 1.7K Nebula
- 86 Nebula Ideas
- 62 Nebula Status and Incidents
- 4.7K Security
- 236 Security Ideas
- 1.1K Switch
- 50 Switch Ideas
- 908 WirelessLAN
- 27 WLAN Ideas
- 5.3K Consumer Product
- 172 Service & License
- 294 News and Release
- 65 Security Advisories
- 14 Education Center
- 911 FAQ
- 399 Nebula FAQ
- 249 Security FAQ
- 90 Switch FAQ
- 100 WirelessLAN FAQ
- 18 Consumer Product FAQ
- 55 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 68 About Community
- 51 Security Highlight
Zyxel Employee