Serious Discussion Quick Play with McAfee

Apparently the mc-fake-alert (which is called Fake Alerts Broker and has been there for a while) has finally been integrated in the main UI.
I just reinstalled it and got v. 134.

1759367111890.png

It has new setting in General settings:

1759367240434.png

Link leads to this article: https://www.mcafee.com/support/s/article/000002553?language=en_US
 
Yeah, but apart from that, even on R133, the "details of threat detection" window changed a few days ago.

It no longer displays just the file name and detection name as before, it is a bit more explanatory (detection name is gone).

McAfee 2 weeks ago received a patent on their own LLM for analysing malware.

At the bottom of the detection window there is text "Malware summaries are AI-generated and may not be accurate".

There is no summary as of yet though.

Looks like McAfee may be preparing to integrate malware behaviour analysis explanation.
 

Attachments

  • Captura de tela 2025-10-01 221811.png
    Captura de tela 2025-10-01 221811.png
    67.9 KB · Views: 94
  • Captura de tela 2025-10-01 221824.png
    Captura de tela 2025-10-01 221824.png
    120.6 KB · Views: 123
This setting isnt new, at least for me, it was present since I installed McAfee some months ago.
McAfee is rolling it out in stages, for most of us it is becoming available now. According to the article, they've started rolling it out in March.

What do you see when you click "View Details" on a threat detection?
 
McAfee is rolling it out in stages, for most of us it is becoming available now. According to the article, they've started rolling it out in March.

What do you see when you click "View Details" on a threat detection?
I see this, I dont think it is the new detection window.
 

Attachments

  • Captura de tela 2025-10-01 230351.png
    Captura de tela 2025-10-01 230351.png
    102.4 KB · Views: 115
McAfee earlier on (5-6 days ago) was blocking my Orion script. It has now stopped blocking it. It was blocking the file first and it was blocking by behaviour too. Now it has stopped so there must be some automatic false positives mitigation system in place.

I keep working on it, so they have created some sort of exclusion (based on some strings or something). Updated versions are not detected.

I tried submitting to Microsoft but there was an issue with the form. I like this intelligent protection. I don’t need to worry about anything with McAfee (false positives, performance etc).
 
McAfee earlier on (5-6 days ago) was blocking my Orion script. It has now stopped blocking it. It was blocking the file first and it was blocking by behaviour too. Now it has stopped so there must be some automatic false positives mitigation system in place.

I keep working on it, so they have created some sort of exclusion (based on some strings or something). Updated versions are not detected.

I tried submitting to Microsoft but there was an issue with the form. I like this intelligent protection. I don’t need to worry about anything with McAfee (false positives, performance etc).
Likely McAfee got already the MetaData of your script. By having those necessary info,they conclude your file is trustworthy.
 
The servers lined me up to receive the latest update sooner than before. McAfee is still my ol' reliable.

The update was released just 3-4 days ago, I noticed the Real Protect behavioral blocking models were updated, which happens whenever there is a new version. The new file is around 600 kb larger so quite a few additions there. This file contains a multitude of models likely (best one for the task).