cancel
Showing results for 
Search instead for 
Did you mean: 

access protection threats After p6 and remote desktop on servers

 

After patching vse to p6 we get the following access protection threats whenever we do rdp for  servers remote desktop to connect to a server

 

Common Standard ProtectionSmiley Tonguerevent termination of McAfee processesCommon Standard Protection Smiley Tonguerevent termination of McAfee processes

 

Threat Source Process Name

 

C:\WINDOWS\SYSTEM32\SVCHOST.EXE

 

Threat Target File Path:

  C:\PROGRAM FILES\COMMON FILES\MCAFEE\SYSTEMCORE\MCSHIELD.EXE

  C:\PROGRAM FILES (X86)\MCAFEE\VIRUSSCAN ENTERPRISE\SHSTAT.EXE

  C:\PROGRAM FILES (X86)\MCAFEE\VIRUSSCAN ENTERPRISE\VSTSKMGR.EXE

  C:\PROGRAM FILES (X86)\MCAFEE\VIRUSSCAN ENTERPRISE\MFEANN.EXE

   

Is there a way to exclude these threats?

 

 

1 Reply

Re: access protection threats After p6 and remote desktop on servers

update

I am not talking about execlusion of svchost.exe because if we exclude it that means we will allow svchost.exe to terminate mcafee files I guess! is this kind of false positive things? if it is can we exclude only  Threat Target File Path: such as  C:\PROGRAM FILES\COMMON FILES\MCAFEE\SYSTEMCORE\MCSHIELD.EXE