Hello ,
I try to understand a random detection behavior by the SEP12 via a VBS virus.
-SEP detects a file "Manual.docx" as being a virus "VBS.Downloader.Trojan" =>The file is deleted : OK.
- Often the same file is not deleted or detect by the SEP on other machine knowing that SEP is up to date with the same definitions. (Windows 2012 server R2 and WIN7)
-The hash of the Manual.doc Sha-256 is the same: E940B72D911B54625C630CAE426ABC623634DD02CC0021977ED227FC77ED3587
On the workstations when SEP can not detect the file => another antivirus well detect it !!
Could you hel me to explain for this random SEP behavior?
Note:
All definitions are up to date.
All SEP services are enabled.
The SEP lisence is outdated : but not explain why SEP detects the same virus on some PCs and not on others