![]() This SEP detection is from the Insight (File Reputation) feature of the SEP client. The WS.Reputation1 detection indicates a suspicious file and not a traditional anti-virus/malware detection. Depending on policy settings, these files may be Quarantined or deleted. When using Symantec Endpoint Protection (SEP), the SEP client may log WS.Reputation.1 detections on legitimate executable files or installers from trusted vendors. It is categorized as a WS.Reputation.1 threat (see ): ![]() Despite this, our users complain that Norton flags and deletes our executables and dll's immediately when they try to launch the software:Īs you can see, the threat is based on the fact that our software is "very new" and has "fewer than 5 users in the Norton Community". To avoid false positives, all our executables and dll's are code-signed with an Extended Verification Code Signing Certificate from Sectigo. We have contacted Norton regarding this issue (August 27,2012),however,for now,there are a couple of options for getting around the issue:ġ) Disable Norton prior to downloading FME.We developed an application (see ). "WS.Reputation.1" detection is not Norton detecting an actual virus,but instead is technology Norton has to detect files that haven't been seen by many users and are therefore deemed risky because they are new.After a file has been downloaded lots of times by it's users,then the reputation of the file goes up and Norton will stop detecting the file as risky.亚搏在线Safe Software uploads a new installer almost every day,so our installers will always have a low reputation score. Norton (Symantec) Antivirus "quarantines" or completely removes our fme_beta.msi installer file categorizing it as malware.The type of problem Norton reports is: "WS.Reputation.1".Please see attached screenshot for reference.
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |