PDA

View Full Version : Juniper SSL VPN False Positive


SmackyTheFrog
July 14th, 2009, 08:54 AM
The Win32/Genetik heuristics began detecting our Juniper SSL VPN client for remote access this morning. This is breaking a critical business app, and while I have set up scanning exclusions to prevent any more detections I am unable to remotely manage the quarantine of these systems any my ability to help those that have already been affected is limited.

A sample has been sent to infected@eset.com with the subject "URGENT FALSE POSITIVE Juniper SSL VPN" at 8:44am EST but if there is anything that can be done to float this one to the top of the queue I would appreciate it.

nonoise
July 14th, 2009, 09:24 AM
the correct email address is samples@eset.com, follow this (http://kb.eset.com/esetkb/index?page=content&id=SOLN141) eset kb artcle

Marcos
July 14th, 2009, 09:27 AM
We have actually received it at samples[at]eset.com. It will be fixed in update 4244.

SmackyTheFrog
July 14th, 2009, 09:41 AM
-{ Quote: "the correct email address is samples@eset.com, follow this (http://kb.eset.com/esetkb/index?page=content&id=SOLN141) eset kb artcle" }-
Ha, yeah. Way too much going on first thing in the morning.