

Microsoft just released a new PowerShell script called the Exchange On-premises Mitigation Tool. We are focusing this guide on Windows 10, but the anti-malware tool is also compatible with previous versions, including Windows 8.1 and Windows 7. By Randy Becker, CISO & VP, Network and Security Consulting. You can always see the complete list of options using the msert /? Option, the tool will run in the background without a user interface. Options, the scan will detect and remove any malware. In the case you ran the command with the /f:y Microsoft has made the Safety Scanner available for download on its Microsoft Safety Scanner web page. Specifically, the updated Microsoft Safety Scanner (MSERT) can detect Web shells used in recent Exchange Server attacks by the Hafnium group. If a threat is found using the quick scan, you will get a prompt to perform a full scan. This allows the tool to be run to detect and remediate the latest Exchange Server-related threats.

Source: Windows Central (Image credit: Source: Windows Central) Also known as Microsoft Support Emergency Response Tool, this downloadable scanning tool finds and removes malware from Windows systems, including Exchange.
