1 Reply Latest reply on Dec 5, 2013 6:27 PM by bphang

    False possitive with Fcagte.exe?

    dado407

      In new installed DLP v9.3 during file discovery process VSE On-access scan notice virus with FCAGTE.EXE activity

       

      11/13/2013       1:56:06 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\PROGRAMDATA\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\1\EMBA1F5.tmp      Generic BackDoor.u (Trojan)

      11/13/2013       2:37:15 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\ProgramData\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\1\EMB2527.tmp      RDN/Downloader.a!nn (Trojan)

      11/13/2013       2:37:15 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\ProgramData\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\2\EMBAF46.tmp      RDN/Downloader.a!nn (Trojan)

      11/13/2013       2:37:25 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\ProgramData\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\1\EMB53A5.tmp      RDN/Downloader.a!nn (Trojan)

      11/13/2013       2:40:29 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\ProgramData\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\2\EMBA797.tmp      Generic Dropper.agq (Trojan)

      11/13/2013       2:41:13 PM       Deleted            C:\Program Files\McAfee\DLP\Agent\FCAGTE.EXE            C:\ProgramData\McAfee\DLP\Temp\S-1-5-21-4108620693-1279204527-4024438777-92798\ TeFilesOutput\1\EMBD927.tmp     Generic.Tra!ce57562e143f (ED) (Trojan)

       

      False possitive?