Tech Flash - McAfee 5958 DAT File Triggering False Positives


McAfee issued an URGENT alert regarding a recently released update for Windows machines. The update - 5958 DAT file dated April 21, 2010 - deletes the 'svchost.exe' file on the client machine triggering a 'W32/Wecorl.a' false positive detection that could lead to a continuous loop of system restarts:

http://www.mcafee.com/us/threat_center/default.asp

Prevention and remediation steps are available on the McAfee site. An updated DAT file - 5959 - is available that addresses this issue.

If you are using the Milton Security Edge7200 or EdgeWall 7000 appliances on your network, the following options are available to ensure that your clients remain Operational:

Client Communication: Quickly alert your clients of this issue using the Captive Portal. Easily post a message or a link on the login page to reach your end users.

Endpoint Visibility: Utilize the Endpoint Scanning features to verify that the updated DAT file has been installed on your client devices.

For further details on how you can mitigate this issue and keep your clients functional, contact Milton Security Support Group at support@miltonsecurity.com.


Milton Security Group, LLC
111 North Harbor Blvd., Suite D Fullerton, CA 92832
Main: 888.674.9001
Support: 714.515.4084
www.MiltonSecurity.com
support@miltonsecurity.com

  • Copyright © 2007 - 2010 Milton Security Group LLC
  • Tel: 1.888.674.9001 - Fax: 1.714.459.7489
  • Email: info@miltonsecurity.com