Jump to content

Kaspersky detection category


Go to solution Solved by Schulte,

Recommended Posts

Posted

Hello,

Is there any "user guide" or something to read about detection classification??? See below:

VHO:Trojan.MSIL.Convagent.gen

UDS:Trojan.Win32.Packed.gen

HEUR:Trojan-Banker.Win32.Mekoban.gen

 

While HEUR I may have an idea what it is, what about VHO, UDS ????

Any more like these???

 

Thanks!

 

  • Solution
Posted

Hello @total,

I think you guessed that 'HEUR' is a detection of heuristics. So the detection is very similar to something already known.

VHO indicates a 'Very Harmful Object'.

UDS refers to a detection by the cloud (KSN), it is called 'Urgent Detection System'.

There is also the classification 'not-a-virus' for possibly harmful tools or for adware.

  • Like 2
Posted

Sorry, forgot something important:

'PDM' may also appear, then the 'Proactive Defense Module' has detected a program with suspicious behavior.
In this case only the support can help.

  • Like 1
Posted

Thank you!

Is there any tutorial or info I can read about all these?

  • 4 weeks later...
Posted

VisHash Offline

based on Locality-Sensitive Hashing(LSH), kind of mechine learning detection

  • Thanks 1

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...