we are getting a lot of these at work, from forticlient.
Possible Threat.P0
and the file affected is SC_reader.ico
can anyone from fortinet advise on this.? is it a false positive? is it a virus?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Same issue different files RSA\folder.jpg
We are also having this problem, some applications are blocked due to Forticlient detection of PossibleThreat.P0 in several .dll. Most of these .dll files were installed at a few months, but only started to being detected last week, which leads me to think these are false positives.
Some of the files detected with PossibleThreat.P0:
gsdll32.dll (Ghostscript included in pdfCreator 1.7.2)
atl71.dll
orbd.exe (from Java 7)
No answer FTNT? Just received one of these also. No info on what this is and how to respond.
Actually, just realized I can take the hash in the event log and search that on VirusTotal. Looks like JavaScript exploits being blocked in our case.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1731 | |
1105 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.