abbodi1406/C2R-R2V-AIO

this script appears to be generating alerts in Microsoft Defender 365

lucasjkr opened this issue · 1 comments

Hello,

I have a situation where this script is being deployed via a group policy, and Microsoft Defender has decided to start generating suspicious process alerts for it. I've submitted them as false positives, but the alerts keep generating. I was wondering if anyone else has noticed this behavior? Is it due to deploying it as a GPO that's causing this?

Thanks in advance!
Lucas

Who knows
unlike previous versions, last version of the script doesn't embed any binaries, just helper vbscript and powershell codes