Behaviour malware alert

Vinod Cm 21 Reputation points
2021-12-01T07:06:20.747+00:00

Hello All,

we are recently and new received alert which says
Malware file path: behavior:_pid:9788:82135149762278;process:_pid:9788,ProcessStart:132827932413398196
Malware file path: behavior:_pid:2168:82135149762278;process:_pid:2168,ProcessStart:132827932457743054
Malware file path: behavior:_pid:13064:82135149762278;process:_pid:13064,ProcessStart:132827932519552401
..
,
,
,
,
so on...count less.

can anyone know why this alert generated and how to solve this, is this a realy malware alert ?

Windows for business | Windows Client for IT Pros | User experience | Other
{count} votes

Accepted answer
  1. Chintala Kavitha - (CRS) 76 Reputation points
    2021-12-01T13:43:26.86+00:00

    This is the bug appeared after the “Defender” was updated to version 1.353.1874.0. Thus, Microsoft Defender blocks the opening of files and issues a warning about suspicious activity related to Win32/PowEmotet.SB or Win32/PowEmotet.SC. Some administrators were unable to open Excel documents and cited the upgrade to version 1.353.1874.0 as the reason:

    FIx is to update the machines latest Definition 1.353.1874.1888.


0 additional answers

Sort by: Most helpful

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.