Skip to main content
LithiumKid1976
New Member
November 16, 2015
Question

Possible threat.P0

  • November 16, 2015
  • 4 replies
  • 7306 views

we are getting a lot of these at work, from forticlient.

Possible Threat.P0

and the file affected is SC_reader.ico

 

can anyone from fortinet advise on this.? is it a false positive? is it a virus?

 

    4 replies

    mkonopka
    New Member
    November 16, 2015

    Same issue different files RSA\folder.jpg

    cmtn
    New Member
    November 17, 2015

    We are also having this problem, some applications are blocked due to Forticlient detection of PossibleThreat.P0 in several .dll. Most of these .dll files were installed at a few months, but only started to being detected last week, which leads me to think these are false positives.

     

    Some of the files detected with PossibleThreat.P0:

     

    gsdll32.dll (Ghostscript included in pdfCreator 1.7.2)

    atl71.dll

    orbd.exe (from Java 7)

    seadave
    New Member
    February 23, 2016

    No answer FTNT?  Just received one of these also.  No info on what this is and how to respond.

    seadave
    New Member
    February 23, 2016

    Actually, just realized I can take the hash in the event log and search that on VirusTotal.  Looks like JavaScript exploits being blocked in our case.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!