IntuneWin32Deployer
IntuneWin32Deployer copied to clipboard
Flagged as Trojan
Flagged as Trojan by GDATA when launching the software the very first time. Malware Signature: "PowerShell.Trojan.Agent.BMP (Engine B)"
I did not test further beyond that point.
Falcon Sandbox indicates a possible keylogger http://www.hybrid-analysis.com/sample/6b3bca249c7e8b8b8daddf4b7f6bf250a1274b0ce4e05ac156592ce9b7339ea6/66e09b02b26e9228260f9ad2
Pretty certain this is a false positive, see https://github.com/FlorianSLZ/IntuneWin32Deployer/issues/25