Skip to main content
digimetrica
New Member
July 7, 2017
Question

July 7th a lot of False Positives

  • July 7, 2017
  • 2 replies
  • 5183 views

Hello,

 

today I have a lots of customers complaining about not able to visit some web sites because of Fortigates blocking them because of a virus.

It seems a false positive to me: web sites are different and in different countries. 3 different models of Fortigates. Different customers.

 

This is the virus:

virus="HTML/ScrInject.B!tr" dtype="Virus" ref="http://www.fortinet.com/ve?vn=HTML%2FScrInject.B%21tr" virusid=2437102 

 

a 2011 trojan..... Since I don't know HOW (I think it's not possibile) how to filter out this virus ID I am kinda stuck about what the hell should I tell customers :)

2 replies

khj
New Member
July 8, 2017

Same here, but the problem solved itself after a couple of hours.

hmtay_FTNT
Staff
Staff
July 9, 2017

There was a false positive with the signature and it was fixed a couple of hours later. Sorry about that.

Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!