fox-it/log4j-finder

Symantec Endpoint Protection detects as Trojan

goztrk opened this issue · 3 comments

Windows executable version of this repo is being detected as Trojan.Gen.2.

Symantec Endpoint Version 14.3.4637.2000
image

You can see and read the source code. It’s extremely simple to make an exe out of this (I’ve done it for myself because I wanted the output in a slightly different format). If your AV solution thinks it has a problem, this should then be considered as a false positive and handled as such: report to the support of that AV solution and in the mean time make an exclusion for it.

Yes, I already did that but wanted to inform about the issue.

7 security vendors and 1 sandbox flagged this file as malicious

изображение