Jump to content

Nazwa wykrycia: MSIL/Agent.XCL


Go to solution Solved by Marcos,

Recommended Posts

Posted (edited)

Win Server 2012

NEW NOTIFICATION
Detection type: Trojan 
Detection name: MSIL/Agent.XCL 
Computer name: ASCS-SV-01-T110 
Logged in user: ASCS-SV-01-T110\Agnieszka 
Speech time: 19/09/2024, 14:58:58 CEST 
Scanner: Real-time file system protection 
Action taken: Cured by deletion
Detection type: Trojan
Detection name: MSIL/Agent.XCL
Computer name: ASCS SV 01 T110
Logged in user: ASCS SV 01 T110\Agnieszka
Speech time: 19/09/2024, 14:58:58 CEST
Scanner: Real-time file system protection
Action taken: Cured by deletion

after last update, it is when we encrypt using this tool: PDFKey Pro | Unlock PDF files right now

Please note, this tool is being used for 4 years, there were never had problems. Now there is no problem using it on PCs. Problem is only on server

Every time we try to encrypt any pdf file on server, we receive notification. On PC, when we encrypt even the same pdf file, everything is ok, no notification

Note on server 2012 we have current ESET ver installed

 

 

Screenshot 2024-09-19 15-19-21.jpg

Edited by root
Posted (edited)
43 minutes ago, root said:

after last update, it is when we encrypt using this tool: PDFKey Pro | Unlock PDF files right now

It is possible the malicious behavior only manifests on Win Server installations.

Edited by itman
  • Administrators
  • Solution
Posted

We've removed the detection. The file appears to be clean and is not subject to detection.

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...