Kaspersky
Solved

Alert flooding on KS Endpoint Security 10 regarding KSClient.msi

  • 5 August 2021
  • 1 reply
  • 82 views

Hello,

Since a while, I've multiple alerts (210 on 3 weeks for 1 PC) regarding HEUR: Trojan.OLE2.Alien.gen. But the file implied is KSClient.msi locate into Windows / Temp.

Item detected: HEUR: Trojan.OLE2.Alien.gen
File Path: C: \ Windows \ Temp \ {XXX} \ KSClient.msi
Result: Quarantine

I've no MD5 hash for now.

Can you confirm that KSClient.msi is a spoofing of Kaspersky? Or is it legit ?

Thanks.

Regards.

icon

Best answer by Kinnari 9 August 2021, 21:44

View original

This topic has been closed for comments

1 reply

Userlevel 1
Badge

Greetings Wrach!

Please upload suspicious file to https://www.virustotal.com/gui/  and you will see its results there. 

Best Regards,