I can roll out Teamviewer 12 because Mcafee claims there is a trojan and therefore the file is automatically deleted by OnAccessScan
cairns ran C:\Windows\explorer.exe, which attempted to access xxxxxTeamViewer_Assignment.exe. The Trojan named Artemis!15B30775AE5F was detected and deleted.
Analyzer / Detector
Analyzer content creation date 15/1/2017 06:35
Product name McAfee Endpoint Security
Product version 10.5.0.581
McAfee GTI query Yes
Task name On-Access Scan
Feature name On-Access Scan
Threat
Action taken Delete
Threat category Malware detected
Threat detected on creation Yes
Threat event ID 1027
Threat handled Yes
Threat name Artemis!15B30775AE5F
Threat severity Critical
Threat timestamp 16/1/2017 10:06
Threat type Trojan
Source
Source hostName xxxx
Source process name C:\Windows\explorer.exe
Target
Target access time 16/1/2017 10:04
Target create time 16/1/2017 10:04
Target file size (bytes) 3132624
Target hash 15b30775ae5f6f880c13e874c8181f3a
Target host name xxxxx
Target modify time 23/11/2016 14:35
Target name TeamViewer_Assignment.exe
Target path xxxxx
Target user name xxx\xxxx
Other
Vector type Local System
Cleanable Yes
Detection message McAfee Endpoint Security detected a threat.
Detection quarantine ID {84F58F42-EF21-4B48-81A9-5DFA922E0A95}
Duration before detection (days) 0
Description xx\xxx ran C:\Windows\explorer.exe, which attempted to access
\Users\xxx\TeamViewer_Assignment.exe. The Trojan named Artemis!15B30775AE5F was detected and deleted.
First action status Succeeded
First attempted action Clean
Second action status Succeeded
Second attempted action Delete
