> Source: [sk180493](https://support.checkpoint.com/results/sk/sk180493)

# sk180493 - External USB execution of malicious files is not detected by Endpoint Security Client versions earlier than E87.00

| Property | Value |
|----------|-------|
| Solution ID | sk180493 |
| Date Created | 2023-01-09 |
| Last Modified | 2023-01-11 |
| Technical Level | General |
| Products | Endpoint Security |
| Versions | Cloud, E89.X, E88.X |
| OS | Windows |

## Symptoms

- * When a USB flash drive (that is not formatted as NTFS) is inserted with malicious files, it is not detected by Endpoint Security Client.
* When USB flash drive with Mimikatz malicious file is inserted, it is not detected by Endpoint Security Client.

## Solution

This problem was fixed. The fix is included in:  

[**Endpoint Security Client E87.00**](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk180365&partition=Basic&product=Endpoint)  

Check Point recommends to always upgrade to the most recent version ([Remote Access (VPN) / Endpoint Security Clients](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=downloads&product=175)).

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
