BLOCKED status
Generic malware family
CRITICAL severity
Endpoint File Reputation triggered by
c:\users\ieuser\desktop\malware\appinstaller 11.6.exe trigger
Unknown. protection name
IEUser local user
ATTACK STATS
What sort of connections and processes were involved?
1 Malicious
Files
ENTRY POINT
How did it enter the system?
Incident started through vmtoolsd.exe
REMEDIATION
Were all incident created elements removed?
100%3/3
quarantined/deleted files