A threat found in Memory win64/shadowpad.t detected after restart - Exchange Server 2019

Farrukh Ali Qureshi 46 Reputation points
2025-02-13T06:06:21.3533333+00:00

Hi,

I am using Microsoft exchange 2019 on-prem on a virtual machine hosted at VMware EsXi 6.5 and the operating system of the machine is windows server 2019 std. Boot system is EFI. And eset server security is installed.

The Issue I am facing from long time is, whenever I restart the server eset popped up multiple notifications stating that a threat was found in memory. win64/shadowpad.t detected after restart and ask me to restart the server. But restarting the server didn't resolved the issues and again same issues arises.

Could you please help me to understand where this trojen exist and how can I get rid of this threat.

Looking forward.

Regards,

Farrukh Ali Qureshi

Exchange Server
Exchange Server
A family of Microsoft client/server messaging and collaboration software.
1,446 questions
Windows Server 2019
Windows Server 2019
A Microsoft server operating system that supports enterprise-level management updated to data storage.
3,907 questions
Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
13,703 questions
Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,791 questions
Microsoft Exchange
Microsoft Exchange
Microsoft messaging and collaboration software.
682 questions
{count} votes

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.