Suspicious.cloud.13 Part 2

Today, Bitdefender Antivirus for Mac posted two "Threat successfully deleted" messages. 

QUESTIONS
I would like to understand more than what's stated in the previous "suspicious.cloud.13" post ( Suspicious.cloud.13 is a cloud based detection by bitdefender which is independent of signature based detection that is created by malware researchers … read more about cloud based detection on https://www.kaspersky.com/resource-center/definitions/cloud-antivirus ,"(sic) --

  1. What's is the Suspicious.Cloud.13 at a high level?
  2. What is it trying to do so I can know what I should look for if it is successful?
  3. Do I need to worry about the other emails in those boxes (and the others) being infected?

Here are the messages for reference…

MESSAGE 1
Threat successfully deleted
Feature: Antivirus
An infected file attempted to run on your device.
Threat name: Suspicious.Cloud.13.0056B8601C0000
Path: /Users/[letters]/Library/Mail/V[number]/[numbers and letters]/[letters].mbox/
[numbers and letters]/Data/…/Messages/[number].emIx=>[Subject: …] [Date: Tue, 17 Dec 2013 [time stamp]]=> (message body)=>(INFECTED_JS)
We deleted the file to prevent malicious commands from being executed on your device.

MESSAGE 2
Threat successfully deleted
Feature: Antivirus
An infected file attempted to run on your device.
Threat name: Suspicious.Cloud. 13.0056B8601C0000
Path: /Users/[letters]/Library/Mail/V[number]/[numbers and letters]/[letters].mbox/[numbers and letters]/Data/…/Messages/[number].emlx=>[Subject: …] [Date: Thu, 25 Apr 2013 [time stamp]]=>(message body)=>(INFECTED_JS)
We deleted the file to prevent malicious commands from being executed on your device.

Answers

  • Gjoksi
    Gjoksi Defender of the month mod

    Hello.
    First, take screenshot(s) of the issue,
    create a log file on your MacOS device using BDProfiler, by following these steps:
    https://www.bitdefender.com/consumer/support/answer/1863/
    and
    create a log file on your MacOS device using BDsysLog, by following these steps:
    https://www.bitdefender.com/consumer/support/answer/11198/
    Next, contact Bitdefender Consumer Support by e-mail:
    https://www.bitdefender.com/consumer/support/help/
    with short description of the issue.
    After that, you will get an automated reply by the Bitdefender Customer Care Team, with your ticket number.
    Now, in reply to that automated reply, you can send the screenshot(s) you already took and the log files you already created in the first step.
    Since you are all done, just wait for the support engineers to investigate your issue and find a solution to fix the issue.
    Remember that the screenshot(s) and the log files will help a lot to the support engineers for better and faster investigation on your issue and finding a solution.
    NOTE: If any of the log file is larger than 25MB, you can upload the log file here:
    https://upload.bitdefender.net/
    After the upload is done, you will get a notification with the file's URL and then you can share the file's URL with the Bitdefender Consumer Support.
    Regards.

  • Thanks, Gjoksi — will do.

    The general audience may be interested in another question: based on the Notification message, why is the cloud-based detection by BitDefender scanning my system along with the desktop BitDefender?

  • Flexx
    Flexx mod
    edited November 1

    Most antimalware programs today, not just Bitdefender, use a combination of three core security measures: signatures, behavior blocker, and cloud-based scanning. Signatures help detect known threats by matching files to a database of malware. Behavior blocker add another layer by watching for suspicious actions that could signal new or unknown malware. Finally, cloud-based scanning strengthens these measures by connecting the antimalware software to a vast, real-time online database, allowing it to catch emerging threats quickly and efficiently, without relying solely on device resources. Together, these three layers provide a comprehensive approach to malware detection and protection.

    Regards

    Life happens, Coffee helps!

    Show your Attitude, when you reach that Altitude!

    Bitdefender Ultimate Security Plus (user)