xilogo, if the file is clean, I recommend you to add it in the Defender's exclusions.
1. Ensure that the file is clean
- Go to VirusTotal:
- Open your browser and visit: https://www.virustotal.com
- Click "Choose file":
- On the homepage, click the "Choose file" button under the File tab.
- Browse to your file:
- Navigate to the file being flagged: C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
- Note: Windows may block access to this system file directly. In that case, copy the suspicious script or related executable to your Desktop first.
- Select the file and click "Open".
- Click "Confirm upload" to submit the file for scanning.
- Let me know the results. We will continue from there.