Jump to content

TrojanDownloader:O97M/Emotet!pz


Go to solution Solved by Marcos,

Recommended Posts

On 9/15/23, Windows Defender detected Emotet!pz on two different Excel spreadsheets on two complete separate computers/networks. At the time, neither workstation had Eset NOD32 installed.  After installing NOD32 and restoring the one of the flagged files, Eset found no infection in suspected file and the entire workstation scanned clean.

I suspect this is a false positive from Windows Defender?  Anyone else experience this?

I've used Eset for many years and trust its protection.

Thank you!
Al
 

Link to comment
Share on other sites

2 minutes ago, Marcos said:

Please check the file at www.virustotal.com and post a link to scan results here.

I'd love to Marcos, but they contain personal information.
Thank you!

Link to comment
Share on other sites

23 minutes ago, Marcos said:

If you create a copy and remove all personal information is it still detected?

If it really is infected, is it wise to open the file, activating the malicious code?

Link to comment
Share on other sites

  • Administrators

Please compress the file, encrypt it with the password "infected" and supply it to me via a private message. You can also send it to samples[at]eset.com.

Link to comment
Share on other sites

29 minutes ago, Marcos said:

Please compress the file, encrypt it with the password "infected" and supply it to me via a private message. You can also send it to samples[at]eset.com.

Please check your PMs.  FYI - it's not password protected.   Thank you!

Link to comment
Share on other sites

8 minutes ago, Marcos said:

We confirm it's a false positive by Microsoft.

THANK YOU!  I surprised others haven't run in this. 

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...