McAfee Misdetects EICAR

| | Comments (0) | TrackBacks (0)

EICAR is the antivirus industry standard for verifying that the antivirus scanner is on, it can detect something. Its a harmless line of text.

According to a post on the Full Disclosure mailing list, McAfee is misidentifying EICAR as elspy.worm.

The misdetection was reported when McAfee VirusScan Enterprise 8.0.0 (tested unpatched and with Patch 11)
using the 4781 DAT file was used. I have not verified this report.

Categories

0 TrackBacks

Listed below are links to blogs that reference this entry: McAfee Misdetects EICAR.

TrackBack URL for this entry: http://www.infosecblog.org/mt-tb20071121.pl/204

Leave a comment

Powered by Ajax Comments

About this Entry

This page contains a single entry by Roger published on June 11, 2006 12:10 AM.

Why dont they just post my passwords online and be done with it. was the previous entry in this blog.

ISA 2004 Migration. is the next entry in this blog.

Find recent content on the main index or look in the archives to find all content.

Add to Google
Please contact me by leaving a comment where appropriate. Otherwise, you can click here to reveal an email address for me.
Got Backups? Get Safe Online Remember Rick Rescorla Powered by Movable Type 4.23-en