Forums  Register  Login  My Profile  Inbox  Address Book  My Subscription  My Forums 

Member List  Search  FAQ  Ticket List  Log Out

 

False Positives Again

 
Logged in as: Guest
Users viewing this topic: none
  Printable Version
All Forums >> [Networking & Security] >> GFI LANguard >> False Positives Again Page: [1]
Login
Message << Older Topic   Newer Topic >>
False Positives Again - 22.Oct.2009 10:38:02 AM   
TST Dev

 

Posts: 1
Joined: 22.Oct.2009
Status: offline
We have been running Languard 8 with no problems with false positives. I have been trialling version 9 against our test network and straight away I am getting warnings re ports 6666 & 6667 on all machines scanned ie 22. I have disabled the AV and yes there are reports on backdoors but only on 4 machines. Have run scans against the same machines using Languard 8 (with AV) and again have reports against 4 machines. NMAP shows the ports as closed and netstat shows the same. I am loathed to run without AV; any more ideas?   
Post #: 1
RE: False Positives Again - 22.Oct.2009 10:40:32 AM   
DrewE

 

Posts: 1058
Joined: 28.Apr.2008
From: Cary, NC
Status: offline
Most AntiVirus applications installed on the GFI Languard machine will monitor outbound ports for "virus-like" activity. This can cause GFI LanGuard to think the port is open when scanning any machine. You may need to contact your AV Vendor to disable this type of functionality within the product.

_____________________________

Drew Easley - Technical Support Representative
GFI Software - www.gfi.com

(in reply to TST Dev)
Post #: 2
Page:   [1]
All Forums >> [Networking & Security] >> GFI LANguard >> False Positives Again Page: [1]
Jump to:





New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts