Advice Request KTS force-removing excluded files and folders

Please provide comments and solutions that are helpful to the author of this topic.

Studynxx

Level 8
Thread author
Verified
Well-known
Jan 20, 2023
429
369
667
As the title suggests, I've tried everything.... It keeps deleting my batch files. I'm trying to make a backup with Macrium but to no avail as it keeps deleting my batch scripts

What can i do?
 
You can add your batch files to the exclusions list in Kaspersky settings. Go to Settings > Additional > Threats and Exclusions > Specify trusted applications > Add > select your batch file. This should prevent Kaspersky from deleting your files.
 
As the title suggests, I've tried everything.... It keeps deleting my batch files. I'm trying to make a backup with Macrium but to no avail as it keeps deleting my batch scripts

What can i do?
Can you disable KTS protection for 5 mints & use 7zip for password protected batch files then renable protection. Or disabled protection for 1 hours and run macrium. Create backup.
 
  • Like
Reactions: Studynxx
Can You post captures of the exclusions?
Sure.

kts screenshot.png
 
  • Like
Reactions: Captain Awesome
I guess that specific detection is in "Object Name:" field:

1737374979104.png



Try adding the mask *Detection name*


Also, where are located those files, in shared network folder? 🤔

1737375101550.png
 
I guess that specific detection is in "Object Name:" field:

View attachment 287236


Try adding the mask *Detection name*


Also, where are located those files, in shared network folder? 🤔

View attachment 287237
Yes, correct, they're in a shared network folder. On my NAS.

Yes, that's the object name, so should I add *Detection name*? HEUR:Trojan-Downloader.BAT.Bitser.gen is what's the detection name
 
Not necessary, can You post the exact details of the detection, check in Reports and copy/paste fromt there.
Event: Object deleted
User: [REDACTED]
User type: Active user
Application name: ReflectBin.exe
Application path: C:\Program Files\Macrium\Reflect
Component: File Anti-Virus
Result description: Deleted
Type: Trojan
Name: UDS:Trojan-Downloader.BAT.Bitser.gen
Precision: Exactly
Threat level: High
Object type: File
Object name: rclone_install.bat
Object path: [REDACTED]
MD5: A8288B8CAAE989FB652C55277DE04287
 

You may also like...