Jump to content

GenScript.GBU detected infinitely


Recommended Posts

Category trojan
Detection created Sep 24, 2019
Detection database version 20070

 

ESET Mail Security 7.1.10009.0

Microsoft Exchange Server 2013 Cumulative Update 21

Microsoft Windows Server 2008 R2 6.1.7601

 

GenScript.GBU is being detected and 'cleaned' but it is not. Alert notifications are popping up over the same e-mails every few seconds.

Even after deleting the e-mails and the associated attachments from quarantine, this is still happening. Seems ESET is unable to 'clean' the e-mails as per policy settings.

How can we get ESET to clean or delete these e-mails? Whitelisting the signature is not an option - it is a signature for a reason, even though there isn't any useful info on Virusradar.

Link to comment
Share on other sites

  • Administrators

To start off, please collect logs with ESET Log Collector and upload the generated archive here for perusal. Only ESET staff has access to attachments here.

Link to comment
Share on other sites

Which logs specifically would you need? I'm afraid the whole Log Collector output produces files over 16mb which ESMC won't accept and they also contain too much private information to be shared on a public platform.

Link to comment
Share on other sites

  • Administrators

ELC logs should be collected directly on the server. Of course, logs contain sensitive information, such as user profile names. You can upload the generated archive to a safe location and drop me a personal message with a download link.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...