10-24-2019 09:54 AM - edited 02-20-2020 09:11 PM
Currently downloading Firefox 70.0 from https://www.mozilla.org/en-US/firefox/download/thanks/ is being marked in Cisco AMP for Endpoints as malicious.
Solved! Go to Solution.
10-28-2019 06:58 AM
False Positive confirmed by TALOS and the hash is no longer marked as malicious.
Thanks,
Matt
10-24-2019 04:34 PM
I just downloaded the file you linked. It had a hash of
2acb8fbc34a4eecfa8a9d0fe5e0b522a8a1b5dcd97fd52b38464e5a00524197c which is not marked malicious in the AMP database. Could you provide the hash of the file you downloaded that was detected as malicious?
Thanks,
Matt
10-24-2019 04:37 PM
10-24-2019 04:37 PM
069edc8e7266e5aa044ca84e76641fc12320186eb8d061f0d74b2f4857922782
10-24-2019 05:30 PM
I've submitted a False Positive review to TALOS for that file. In the future, you can submit these yourself for a faster turnaround time at https://talosintelligence.com/talos_file_reputation . Search by the file hash and then, if the disposition is malicious as this one is, click the Submit a File Reputation Ticket here hyperlink.
Thanks,
Matt
10-24-2019 05:52 PM
10-28-2019 06:58 AM
False Positive confirmed by TALOS and the hash is no longer marked as malicious.
Thanks,
Matt
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide