Microsoft

Microsoft Defender Sees Office updates as malware

Microsoft Defender’s security solution had a curious flaw: According to a report, Defender briefly marked Microsoft’s own Office updates as malware. However, the “false positive” detection has already been corrected. This is from a message from Online magazines Neowin from. Microsoft made a big mistake when Defender for Endpoint Security started detecting updates to its own Office app as ransomware. The antivirus program incorrectly identified the OfficeSvcMgr.exe file as malicious software.

This incorrect classification of the updates was discovered by system administrators who were surprised by the message in the Microsoft Defender for Endpoint warnings about the “ransomware”.

False reports in Defender are not uncommon. Applications are often classified as “Potentially Unwanted Software” or updates are marked as infected without any real intention. Problems with false positives keep popping up, but Microsoft can usually correct them quickly.

False Positive

After contacting Microsoft support, the Defender team resolved the issue and first confirmed that it was indeed a false positive warning. Steve Scholz explained the issue in a thread on Reddit. Scholz is the foremost security and compliance technical specialist at Microsoft. His team analyzed the error and quickly found a solution. In another reply in the same thread, he explained that the problem was caused by a code bug that has since been fixed.

explanation

  • FOR YOUR INFORMATION. This was a false/positive and has now been corrected. Read the details:
  • Since the morning of March 16, customers may have experienced a number of false positives attributed to the detection of ransomware behavior in the file system. Microsoft examined this cluster of detections and determined that they were false positives. Microsoft has updated the cloud logic to suppress the false positives.

Description

  • Customers may have experienced some false positives attributed to a detection of ransomware behavior in the file system.
  • Microsoft has updated the cloud logic to avoid generating future alerts and to clear the past false positives.

Recent Posts

Navigating the Digital Frontier: How Mobile Proxy Infrastructure Empowers Modern Technology Journalism and Enterprise Data Mining

For tech analysts, software engineers, and digital journalists tracking real-time market shifts on platforms like…

17 hours ago

Decoupling Digital Identity: How Modern App Ecosystems Rely on Virtual Telecommunications Architecture

Modern mobile security models treat phone numbers as default digital passports, forcing tech consumers and…

17 hours ago

Top Extended Detection and Response Platforms for Large Enterprises: A Vendor Comparison Guide

Large enterprises have a lot of security data, but identifying the signals that truly matter…

18 hours ago

5 Lab Methods Scientists Use to Find What’s Really in Tap Water

A glass of tap water reveals little about its chemical makeup. Clear water may still…

2 days ago

Medical Technology Leadership Programs and Industry Collaborators: The Essential Resource Roundup

In today’s healthcare landscape, collaboration between academic programs and corporate leaders fuels both technological innovation…

3 days ago

Smartphone ban: Italy will soon pay for distracted pedestrians

Italy is cracking down on cell phone use in traffic and will soon be targeting…

3 days ago