Hi @iverbuyst ,
When this executable calls CMD.exe it should have some information in Story Graph.
Click on CMD.exe in story graph and verify what its trying to do on right column.
If it connects to a malicious URL for example, then its worth investigating the source file.
You can create a ticket with McAfee Support and submit the Unknown file as a sample.
https://kc.mcafee.com/corporate/index?page=content&id=KB68030
Please also attach the following logs to the ticket mentioning the time stamp of detection.
%deflogdir%\OnAccessScan_Activity.log
%deflogdir%\OnDemandScan_Activity.log
%deflogdir%\ExploitPrevention_Activity.log
%deflogdir%\ExploitPrevention_Debug.log
%deflogdir%\AdaptiveThreatProtection_Activity.log
Thanks
Was my reply helpful?
If you find this post useful, Please give it a Kudos! Also, Please don't forget to select "Accept as a solution" if this reply resolves your query!