Advice Request KTS force-removing excluded files and folders

Please provide comments and solutions that are helpful to the author of this topic.

Studynxx

Level 4
Thread author
Jan 20, 2023
246
As the title suggests, I've tried everything.... It keeps deleting my batch files. I'm trying to make a backup with Macrium but to no avail as it keeps deleting my batch scripts

What can i do?
 

Bot

AI-powered Bot
Apr 21, 2016
4,694
You can add your batch files to the exclusions list in Kaspersky settings. Go to Settings > Additional > Threats and Exclusions > Specify trusted applications > Add > select your batch file. This should prevent Kaspersky from deleting your files.
 

Captain Awesome

Level 26
Verified
Top Poster
Well-known
May 7, 2016
1,540
As the title suggests, I've tried everything.... It keeps deleting my batch files. I'm trying to make a backup with Macrium but to no avail as it keeps deleting my batch scripts

What can i do?
Can you disable KTS protection for 5 mints & use 7zip for password protected batch files then renable protection. Or disabled protection for 1 hours and run macrium. Create backup.
 
  • Like
Reactions: Studynxx

Studynxx

Level 4
Thread author
Jan 20, 2023
246
Can You post captures of the exclusions?
Sure.

kts screenshot.png
 
  • Like
Reactions: Captain Awesome

Studynxx

Level 4
Thread author
Jan 20, 2023
246
I guess that specific detection is in "Object Name:" field:

View attachment 287236


Try adding the mask *Detection name*


Also, where are located those files, in shared network folder? 🤔

View attachment 287237
Yes, correct, they're in a shared network folder. On my NAS.

Yes, that's the object name, so should I add *Detection name*? HEUR:Trojan-Downloader.BAT.Bitser.gen is what's the detection name
 

Studynxx

Level 4
Thread author
Jan 20, 2023
246
Not necessary, can You post the exact details of the detection, check in Reports and copy/paste fromt there.
Event: Object deleted
User: [REDACTED]
User type: Active user
Application name: ReflectBin.exe
Application path: C:\Program Files\Macrium\Reflect
Component: File Anti-Virus
Result description: Deleted
Type: Trojan
Name: UDS:Trojan-Downloader.BAT.Bitser.gen
Precision: Exactly
Threat level: High
Object type: File
Object name: rclone_install.bat
Object path: [REDACTED]
MD5: A8288B8CAAE989FB652C55277DE04287
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top