teilow 0 Posted February 12, 2022 Share Posted February 12, 2022 Hello there, I have several Windows Servers that consistently detect PowerShell/TrojanDownloader.Agent.EQN trojan. I can't determine which file is impacted by this attack. Every time EFSW shows cleaned by blocking, but the same log appears again after a few hours. How to solve this problem? eis_logs.zip Link to comment Share on other sites More sharing options...
Administrators Marcos 4,931 Posted February 13, 2022 Administrators Share Posted February 13, 2022 Please run Task Scheduler and delete the tasks: ViGEmBusUpdater1 MSI Task Host - Detect_Monitor Also I'd recommend enabling: Detection of potentially unsafe applications LiveGrid - feedback system Note: It is possible that the tasks have already been cleaned by ESET in the mean time. Link to comment Share on other sites More sharing options...
Recommended Posts