Jump to content

Windows update file deleted, C:\Windows\System32\wuauclt.exe, Trojan High Exactly.


Go to solution Solved by richbuff,

Recommended Posts

KIS detects and deletes a file from Windows update causing update to fail. OS recovers itself.

 

mccspal.dll    Object deleted

 

 

NIGEL-HOME\win8    C:\Windows\System32\wuauclt.exe    wuauclt.exe    C:\Windows\System32\    Windows Update    14440    C:\Windows\SoftwareDistribution\Download\70bcc863a990050b701f79b4ae7d2227\amd64_Microsoft-OneCore-ApplicationModel-Sync-Desktop-FOD-Package~~amd64~~10.0.20190.1000\amd64_microsoft-windows-mccs-mccspal_31bf3856ad364e35_10.0.20190.1000_none_8ef55971e141686e\mccspal.dll    Object deleted    Deleted    C:\Windows\SoftwareDistribution\Download\70bcc863a990050b701f79b4ae7d2227\amd64_Microsoft-OneCore-ApplicationModel-Sync-Desktop-FOD-Package~~amd64~~10.0.20190.1000\amd64_microsoft-windows-mccs-mccspal_31bf3856ad364e35_10.0.20190.1000_none_8ef55971e141686e\    mccspal.dll    File    Active user        UDS:Trojan-Spy.Win32.Xegumumune        Trojan    High    Exactly    Deleted    Today, 19/08/2020 17:49
NIGEL-HOME\win8    C:\Windows\System32\wuauclt.exe    wuauclt.exe    C:\Windows\System32\    Windows Update    14440    C:\Windows\SoftwareDistribution\Download\70bcc863a990050b701f79b4ae7d2227\amd64_Microsoft-OneCore-ApplicationModel-Sync-Desktop-FOD-Package~~amd64~~10.0.20190.1000\amd64_microsoft-windows-mccs-mccspal_31bf3856ad364e35_10.0.20190.1000_none_8ef55971e141686e\mccspal.dll    Malicious object detected    Detected    C:\Windows\SoftwareDistribution\Download\70bcc863a990050b701f79b4ae7d2227\amd64_Microsoft-OneCore-ApplicationModel-Sync-Desktop-FOD-Package~~amd64~~10.0.20190.1000\amd64_microsoft-windows-mccs-mccspal_31bf3856ad364e35_10.0.20190.1000_none_8ef55971e141686e\    mccspal.dll    File    Active user        UDS:Trojan-Spy.Win32.Xegumumune    Cloud Protection    Trojan    High    Exactly    Detected    Today, 19/08/2020 17:49
NT AUTHORITY\SYSTEM                            Task started                    System user    Security level: Recommended, Machine learning and signature analysis: Yes Heuristic Analysis: Light, , Scan technologies: , iSwift: Yes, iChecker: Yes, Action on threat detection: Disinfect, if not possible – delete                            Today, 19/08/2020 17:39
 

Link to comment
Share on other sites

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now


×
×
  • Create New...