Jump to content

Recommended Posts

Acsys cloud
Posted

I got many alerts from Kaspersky endpoint portal  with SQL Trojan  as follows: 

Please can tell how to remove the Trojan and clean my system 

Thank you 

4:15 am

07/01/2021

Blocked

Result description: Blocked Type: Trojan Name: PDM:Trojan.Win32.GenAutorunMsSqlServerCommandRun.a User: NT AUTHORITY\SYSTEM (System user) Object: C:\Program Files\Microsoft SQL Server\MSSQL14.ACSYS\MSSQL\Binn\sqlservr.exe Reason: Dangerous action Database release date: 6/30/2021 6:39:00 AM SHA256: 7C1A5F47001745DB6F8731677F6499D26B7AF3B883CB7D0C9ED37A2E946FB85F MD5: FE7A8554120C3142B60CDBE5ABAA6362

4:15 am

07/01/2021

Malicious object detected

Result description: Detected Type: Trojan Name: PDM:Trojan.Win32.GenAutorunMsSqlServerCommandRun.a User: NT AUTHORITY\SYSTEM (System user) Object: C:\Program Files\Microsoft SQL Server\MSSQL14.ACSYS\MSSQL\Binn\sqlservr.exe Reason: Behavior analysis Database release date: 6/30/2021 6:39:00 AM SHA256: 7C1A5F47001745DB6F8731677F6499D26B7AF3B883CB7D0C9ED37A2E946FB85F MD5: FE7A8554120C3142B60CDBE5ABAA6362

12:29 pm

06/30/2021

Blocked

Result description: Blocked Type: Trojan Name: PDM:Trojan.Win32.GenAutorunMsSqlServerCommandRun.a User: NT AUTHORITY\SYSTEM (System user) Object: C:\Program Files\Microsoft SQL Server\MSSQL14.ACSYS\MSSQL\Binn\sqlservr.exe Reason: Dangerous action Database release date: 6/28/2021 8:50:00 AM SHA256: 7C1A5F47001745DB6F8731677F6499D26B7AF3B883CB7D0C9ED37A2E946FB85F MD5: FE7A8554120C3142B60CDBE5ABAA6362

12:29 pm

06/30/2021

Malicious object detected

Result description: Detected Type: Trojan Name: PDM:Trojan.Win32.GenAutorunMsSqlServerCommandRun.a User: NT AUTHORITY\SYSTEM (System user) Object: C:\Program Files\Microsoft SQL Server\MSSQL14.ACSYS\MSSQL\Binn\sqlservr.exe Reason: Behavior analysis Database release date: 6/28/2021 8:50:00 AM SHA256: 7C1A5F47001745DB6F8731677F6499D26B7AF3B883CB7D0C9ED37A2E946FB85F MD5: FE7A8554120C3142B60CDBE5ABAA6362
Guest
This topic is now closed to further replies.


×
×
  • Create New...