-
Symantec Endpoint Protection throwing blue screens
Not sure what’s causing the problems (maybe a buggy update to Symantec?) but I’m seeing complaints all over about Symantec Endpoint Protection throwing bluescreens.
A friend of mine wrote and said that they’re seeing bluescreens on most of their systems:
It’s only if we have the Proactive threat protection I think?
Symantec has posted an alert:
Endpoint Protection Client gets a Blue Screen Of Death (BSOD) BAD_POOL_CALLER (c2) or KERNEL_MODE_HEAP_CORRUPTION (13A)
When run LiveUpdate, Endpoint Protection Client gets a Blue Screen Of Death (BSOD) indicates IDSvix86.sys/IDSvia64.sys is the cause of the exception BAD_POOL_CALLER (c2) or KERNEL_MODE_HEAP_CORRUPTION (13A).
When BSOD happens, Intrusion Prevention signature version is 2019/10/14 r61.
Work around:
Symantec released Intrusion Prevention signature version 2019/10/14 r62.
Please run LiveUpdate again to download latest Intrusion Prevention signature 2019/10/14 r62, or rollback to an earlier known good content revision to prevent the BSOD situation. Please check How to Backdate Virus Definitions in Symantec Endpoint Protection Manager in details to roll back definitions.
Any idea if my friend is right?