ATP200 Anti-Malware is blowing up on Microsoft.VCLibs.110.00_11.0.51106.1_x86__8wekyb3d8bbwe.Appx
Message is:
Virus infected SSI:N Type:Threat Intelligence Machine Learning Virus:Malicious Virus File:Microsoft.VCLibs.110.00_11.0.51106.1_x86__8wekyb3d8bbwe.Appx
I've scanned the hash and it's Undetected in VirusTotal.
The IP address that is being connected to it is associated with edgecastcdn and the IP is not listed in BrightCloud. The IP is being connected to by several processes including, the Print Spooler, Adobe Creative Cloud, and other things.
Anyone seeing this?
Best Answers
-
Hi @ChipConnJohn ,
The File hash is not in latest TIML signature.
Please kindly check you have installed the latest signature .
And check if the issue still persist.
Thank you
0 -
It has stopped alerting. Thanks.
1
All Replies
-
Hi @ChipConnJohn ,
Greeting Forum, Could you kindly provide the IP address and FIle hase ?
We will check that.
Thank you
0 -
Hash:
1A4EA694B87EE8542F6FE82D6F247EEF
IP: 72.21.81.240
Thanks!
0 -
Hi @ChipConnJohn ,
The File hash is not in latest TIML signature.
Please kindly check you have installed the latest signature .
And check if the issue still persist.
Thank you
0 -
It has stopped alerting. Thanks.
1
Categories
- All Categories
- 394 Beta Program
- 2.1K Nebula
- 117 Nebula Ideas
- 81 Nebula Status and Incidents
- 5.1K Security
- 81 USG FLEX H Series
- 247 Security Ideas
- 1.3K Switch
- 69 Switch Ideas
- 914 WirelessLAN
- 34 WLAN Ideas
- 5.9K Consumer Product
- 209 Service & License
- 337 News and Release
- 71 Security Advisories
- 21 Education Center
- 5 [Campaign] Zyxel Network Detective
- 1.9K FAQ
- 907 Nebula FAQ
- 415 Security FAQ
- 236 Switch FAQ
- 206 WirelessLAN FAQ
- 46 Consumer Product FAQ
- 138 Service & License FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 73 About Community
- 62 Security Highlight