cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
347
Views
1
Helpful
4
Replies

False Positive? "Adobe Genuine Helper.exe"

MidwestCyber
Level 1
Level 1

Anyone else seeing large numbers of failed retrospectives on the following? We have 350 so far.

  • Disposition: Malicious
  • Filename: Adobe Genuine Helper.exe
  • Detection SHA-256: abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e

Appears to be genuine, no other IOCs noted in the environment. 

https://www.virustotal.com/gui/file/abcf2c8bab98cedb1bd973a0cefa747e6fe9d835248e4471f7cf9c26446abe6e/detection

1 Accepted Solution

Accepted Solutions

Matthew Franks
Cisco Employee
Cisco Employee

Looks like TALOS removed the malicious disposition from that file. Thanks for reporting it!

-Matt

View solution in original post

4 Replies 4

Matthew Franks
Cisco Employee
Cisco Employee

I opened a ticket with TALOS to investigate as a False Positive. Next time you have an issue like this, please open a TAC case so we can track it properly.

Thanks,

-Matt

Thanks Matt, was planning on doing so when I arrived at the office this morning.

Matthew Franks
Cisco Employee
Cisco Employee

Looks like TALOS removed the malicious disposition from that file. Thanks for reporting it!

-Matt

Looks like that is reflecting in our portal. Thanks again!