FCS not stopping Rogue Antimalware/Antivirus RRS feed

  • Question

  • We are running FCS on all machines, managed centrally. We also emply ISA 2006 with Malware inspection.  Since the beigning of December, we have had six occurances of rogue software infect our client systems. On each occurance the infection has required a rebuild of the system.  The software appears to be picked up on random internet sites. All systems are up to date, and all Forefront software appears to be funtioning properly.   Any ideas why these are still getting through, and any ideas on how to stop them.  We do also block third party cookeis at the client level
    Tuesday, December 27, 2011 4:20 PM


  • Hi,

    Send a sample to MS www.microsoft.com/security/portal and or a case with MS. They will help you to solve the issue. In some case, on forums we cannot do anything especially if the AV engine with the last defintion update (and with a scan in safe mode) cannot solve the problem.

    Bechir Gharbi | http://myitforum.com/myitforumwp/community/members/bgharbi/ | Time zone : GMT+1
    • Marked as answer by Rick Tan Wednesday, December 28, 2011 9:07 AM
    Wednesday, December 28, 2011 9:01 AM