<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic False Positive? &amp;quot;Adobe Genuine Helper.exe&amp;quot; in Endpoint Security</title>
    <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164408#M8484</link>
    <description>&lt;P&gt;Anyone else seeing large numbers of failed retrospectives on the following? We have 350 so far.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Disposition:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Malicious&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;Filename:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Adobe Genuine Helper.exe&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;Detection SHA-256: abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Appears to be genuine, no other IOCs noted in the environment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/gui/file/abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e/detection" target="_blank" rel="noopener"&gt;https://www.virustotal.com/gui/file/abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e/detection&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 22 Aug 2024 11:40:18 GMT</pubDate>
    <dc:creator>MidwestCyber</dc:creator>
    <dc:date>2024-08-22T11:40:18Z</dc:date>
    <item>
      <title>False Positive? "Adobe Genuine Helper.exe"</title>
      <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164408#M8484</link>
      <description>&lt;P&gt;Anyone else seeing large numbers of failed retrospectives on the following? We have 350 so far.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;Disposition:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Malicious&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;Filename:&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;SPAN class=""&gt;Adobe Genuine Helper.exe&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;Detection SHA-256: abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Appears to be genuine, no other IOCs noted in the environment.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.virustotal.com/gui/file/abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e/detection" target="_blank" rel="noopener"&gt;https://www.virustotal.com/gui/file/abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e/detection&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2024 11:40:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164408#M8484</guid>
      <dc:creator>MidwestCyber</dc:creator>
      <dc:date>2024-08-22T11:40:18Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive? "Adobe Genuine Helper.exe"</title>
      <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164428#M8485</link>
      <description>&lt;P&gt;I opened a ticket with TALOS to investigate as a False Positive. Next time you have an issue like this, please open a TAC case so we can track it properly.&lt;/P&gt;
&lt;P&gt;Thanks,&lt;/P&gt;
&lt;P&gt;-Matt&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2024 12:22:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164428#M8485</guid>
      <dc:creator>Matthew Franks</dc:creator>
      <dc:date>2024-08-22T12:22:47Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive? "Adobe Genuine Helper.exe"</title>
      <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164440#M8486</link>
      <description>&lt;P&gt;Thanks Matt, was planning on doing so when I arrived at the office this morning.&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2024 12:35:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164440#M8486</guid>
      <dc:creator>MidwestCyber</dc:creator>
      <dc:date>2024-08-22T12:35:07Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive? "Adobe Genuine Helper.exe"</title>
      <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164489#M8487</link>
      <description>&lt;P&gt;Looks like TALOS removed the malicious disposition from that file. Thanks for reporting it!&lt;/P&gt;
&lt;P&gt;-Matt&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2024 13:49:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164489#M8487</guid>
      <dc:creator>Matthew Franks</dc:creator>
      <dc:date>2024-08-22T13:49:34Z</dc:date>
    </item>
    <item>
      <title>Re: False Positive? "Adobe Genuine Helper.exe"</title>
      <link>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164494#M8488</link>
      <description>&lt;P&gt;Looks like that is reflecting in our portal. Thanks again!&lt;/P&gt;</description>
      <pubDate>Thu, 22 Aug 2024 13:55:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/endpoint-security/false-positive-quot-adobe-genuine-helper-exe-quot/m-p/5164494#M8488</guid>
      <dc:creator>MidwestCyber</dc:creator>
      <dc:date>2024-08-22T13:55:28Z</dc:date>
    </item>
  </channel>
</rss>

