- Thread Author
- #1
Hi,
I did take a look at my firewall log at Kaspersky and I did see that a file s2prcuen.zd3.vbs had showed up.
When I google on the file I can't find anything about the file.
I did also look after the file but it's gone, I have also been looking at my backups for 21:00 and 00:00 at the same day but the file are not there, according to Kaspersky firewall the file did try to access out from the network at 22:47.
So what's is this file? IS it something to worry about? Should I re-install my server?
I'm running Windows Server 2016 at this machine.
According to picture no2 Kaspersky did put it in the Trusted section due the analysis of the digital signature.
I think that I have my server pritty secure, it's behind a Router Firewall, Windows Firewall is enabled, Kaspersky Office security for server (Firewall and Anti-Virus and malmware) and I also use Windows defender.
I only use the server for SMB share internaly and as Plex server.
I have disabled SMB v1.
Link Removed
Link Removed
Link Removed
When I take a look at the Event log I can find this things:
I did take a look at my firewall log at Kaspersky and I did see that a file s2prcuen.zd3.vbs had showed up.
When I google on the file I can't find anything about the file.
I did also look after the file but it's gone, I have also been looking at my backups for 21:00 and 00:00 at the same day but the file are not there, according to Kaspersky firewall the file did try to access out from the network at 22:47.
So what's is this file? IS it something to worry about? Should I re-install my server?
I'm running Windows Server 2016 at this machine.
According to picture no2 Kaspersky did put it in the Trusted section due the analysis of the digital signature.
I think that I have my server pritty secure, it's behind a Router Firewall, Windows Firewall is enabled, Kaspersky Office security for server (Firewall and Anti-Virus and malmware) and I also use Windows defender.
I only use the server for SMB share internaly and as Plex server.
I have disabled SMB v1.
Link Removed
Link Removed
Link Removed
When I take a look at the Event log I can find this things:
Code:
2017-07-16 22:47:45
The Background Intelligent Transfer Service service entered the stopped state.
2017-07-16 22:47:45
The start type of the Background Intelligent Transfer Service service was changed from auto start to demand start.
2017-07-16 22:46:57
The Windows Insider Service service entered the stopped state.
2017-07-16 22:46:28
A scheduled backup has been configured for this computer.
2017-07-16 22:46:02
Installation Successful: Windows successfully installed the following update: Definition Update for Windows Defender - KB2267602 (Definition 1.247.957.0)