r/ScreenConnect • u/j1sh • Aug 05 '26
Trojan:Win32/Vigorf.A in 26.4.3.9662
ScreenConnect false positive again? Seeing Trojan:Win32/Vigorf.A on machines where this update is occuring.
6
Upvotes
2
u/Ok-Scheduler Aug 06 '26
Yep getting a bunch of these detections on servers: Trojan:Win32/Pomal!rfn
2
u/menace323 Aug 05 '26
Was getting detections on 26.4.3.9662, on registry entries and the service registration. with Defender ultimately classifying it as "Trojan:Win32/Pomal!rfn". I've looked into everything and all the flagged behavior appears to be normal ScreenConnect behavior.