ClamAV triggering Windows Virus & Threat Protection
-
Windows Server 2022: I'm seeing the following in the Security/Antivirus log:
* INLINE SCANNING ERROR: ClamAV error while scanning file c:\mdaemon\queues\temp\md5001000000064.wrk!
At the same time, Windows Virus & Threat Protection reports:
Detected: Trojan:Script/Sabsik.TE.A!ml
Status: Severe
Details: This program is dangerous and executes commands from an attackerAffected items:
containerfile: C:\MDaemon\Queues\Temp\md5001000000064.wrkI assume this is a false positive? Is so, what's the best way to stop it triggering??
Thanks,
Cameron
-
-