Outage in Docker

Potential false positive detection of Trojan:Script/Wacatac.H!ml by Windows Defender during installation of Docker Desktop v4.17.0 and v4.17.1

Resolved Minor
March 26, 2023 - Started about 1 year ago - Lasted 8 days

Need to monitor Docker outages?
Stay on top of outages with IsDown. Monitor the official status pages of all your vendors, SaaS, and tools, including Docker, and never miss an outage again.
Start Free Trial

Outage Details

Windows Defender updates 1.385.1140.0 and 1.385.1170 are believed to be causing a false positive report of Trojan:Script/Wacatac.H!ml inside Docker Desktop on Windows. This occurs during installation, not during static file analysis. This affects Docker Desktop v4.17.0 and v4.17.1. We will continue to investigate and confirm the false positive. Our upcoming release for v4.18.0 is not affected. Read more in the GitHub Issue here: https://github.com/docker/for-win/issues/13335. The last version of Docker Desktop without the (assumed) false positive, v4.16.3, can be found here: https://docs.docker.com/desktop/release-notes/#4163.
Latest Updates ( sorted recent to last )
about 1 year ago - at 03/26/2023 06:04PM

Windows Defender updates 1.385.1140.0 and 1.385.1170 are believed to be causing a false positive report of Trojan:Script/Wacatac.H!ml inside Docker Desktop on Windows. This occurs during installation, not during static file analysis. This affects Docker Desktop v4.17.0 and v4.17.1. We will continue to investigate and confirm the false positive. Our upcoming release for v4.18.0 is not affected. Read more in the GitHub Issue here: https://github.com/docker/for-win/issues/13335. The last version of Docker Desktop without the (assumed) false positive, v4.16.3, can be found here: https://docs.docker.com/desktop/release-notes/#4163.

about 1 year ago - at 03/27/2023 06:28PM

We’ve had reports that Microsoft Defender updates v1.385.1188.0 and beyond have resolved assumed false positive reports of Trojan:Script/Wacatac.H!ml and Trojan:MSIL/Bladabindi!MTB on Docker Desktop v4.17.0 and v4.17.1 installations for many users. We are continuing to investigate prior user reports. Users are advised to update to the latest Microsoft Defender definitions (version 1.385.1188.0 or later). Users may report any issues still experienced after the update here: https://github.com/docker/for-win/issues/13335. Please let us know what version of Docker Desktop and Microsoft Defender "Virus & threat protection updates" you have when doing so; see "Protect your device with the latest updates" here to verify you are up-to-date: https://support.microsoft.com/en-us/windows/virus-threat-protection-in-windows-security-1362f4cd-d71a-b52a-0b66-c2820032b65e.

Start monitoring Docker and all your cloud vendors in minutes

With IsDown, you can monitor all your critical services' official status pages from one centralized dashboard and receive instant alerts the moment an outage is detected. Say goodbye to constantly checking multiple sites for updates and stay ahead of outages with IsDown.

Start free trial

No credit card required · Cancel anytime · 3153 services available

Integrations with Slack Microsoft Teams Google Chat Datadog PagerDuty Zapier Discord Webhook

Setup in 5 minutes or less

How much time you'll save your team, by having the outages information close to them?

14-day free trial · No credit card required · Cancel anytime