Jump to content
qwerty123

Windows Defender False Positives of Immunet Temp Files

Recommended Posts

You may be interested to know that Windows Defender is detecting some immunet temp files as Trojan: JS/Foretype.A!ml

This started happening 2 days ago, and has happened daily to me since.

Their "more info" link, if useful: https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?name=Trojan%3aJS%2fForetype.A!ml&threatid=2147724342&enterprise=0

Edit: Uh, pasting images to your forum is terrible, they lose a ton of quality in the process, practically unreadable. Here: https://imgur.com/15VhZ3Y

 

image.thumb.png.2c2fa6b71725e0e5497e79237f116111.png

Edited by qwerty123
  • Like 1

Share this post


Link to post
Share on other sites

Great idea to include some screenshots qwerty123, much appreciated!

Those are defiantly ClamAV update files being quarantined.

Have you created an exclusion rule for Immunet's "entire Program Files folder" with Windows Defender yet? If not, give that a try.

If you're using Win 10 & you're not sure how to create custom exclusion rules with WD here's a URL that may be helpful. https://www.windowscentral.com/how-exclude-files-and-folders-windows-defender-antivirus-scans

Share this post


Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...

×
×
  • Create New...