Jump to content

Recommended Posts

Posted

Hi

I just need clarity.

In-case whereby an email with malicious attachment file was send to an end user and KES send notification : Event "Malicious object detected" occurred on device and with the results:

Result description: Delete
Object deleted.
 
Should KES  delete the malicious attached file or does it delete the original email that is being send?.
 
In this case lets say its the file below.
Type: Trojan

Name: HEUR:Trojan.Win32.Generic

Object: [From:@example.com][Subject:RE: Proof of Payment][Time:2022/08/24 10:30:24]//Absa.PDF.img

  • 4 weeks later...
Posted

As the message said, KES deleted the file.

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...