Forums on Intune, SCCM, and Windows 11

Welcome to the forums. Register a free account today to become a member! Once signed in, you'll be able to participate on this site by adding your topics and posts, as well as connect with other members through your own private inbox!

PENDING Windows Defender - Malware - Produkey.exe

  • Thread starter Thread starter Craiglee
  • Start date Start date
  • Replies Replies 2
  • Views Views 3K

Craiglee

Member
Messages
21
Reaction score
0
Points
1
Team, I'm a little stumped on this on, Windows 10 Defender detected and subsequently deleted malware Produkey.exe, that's great, however, I'm a little confused as to how this tool got onto the machine in the first place, the tool was detected in a users profile on the machine(users AD account has been disabled for 18+ month) and defender detected the tool as malware a couple of days ago? the users profile hasn't been modified in like 18 months? Why would defender only detect this tool now?
 
Last edited by a moderator:
That's very weird. If the user account has been disabled then probably another user (logged in on same machine) could have downloaded it and saved it to user's profile.
 

Forum statistics

Threads
7,131
Messages
27,848
Members
18,146
Latest member
vanderhaven
Back
Top