Hi guys,
On the moment i have 10's of infections on my LAN, SEP detects this virus and deletes it.
I would like to know how i can track the source of this infection is there a way with SEPM?
Risk name: Trojan.Webkit!html
Risk severity: 1
Discovered: 10/09/2007 00:00:00
Download site: N/A
Downloaded or created by: iexplore.exe
File or path: AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\BXU8XQOK\sh165[1].htm
Application: sh165[1].htm
Version:
File size: 70263
Category set: Malware
Category type: Virus
Hash: 5BCD9A716BA1564BF21BF3FA6F55133F076F53B2B17C0177FA5A78DC2BC5C2AA
Hash algorithm: SHA-256
Company: N/A
Risk Detection
Date found: 07/24/2014 10:28:08
Description:
Actual action: Deleted
Specified primary action: Delete or remove
Specified secondary action: Quarantine
Detection source: Auto-Protect
Risk detection method: Signature-based Detection
URL tracking: On
Source computer:
Event type: Virus found
Database insert date: 07/24/2014 10:29:45
Event client date: 07/24/2014 10:28:08
Permitted application reason: Not on the permitted application list
Risk Reputation
First seen: Reputation was not used in this detection.
Reputation: Reputation was not used in this detection.
Prevalence: Reputation was not used in this detection.
Performance impact: High
Overall rating: High
Detection reason: Antivirus engine
Minimum sensitivity level: N/A
Thanks! LEVD