this script appears to be generating alerts in Microsoft Defender 365
lucasjkr opened this issue · 1 comments
lucasjkr commented
Hello,
I have a situation where this script is being deployed via a group policy, and Microsoft Defender has decided to start generating suspicious process alerts for it. I've submitted them as false positives, but the alerts keep generating. I was wondering if anyone else has noticed this behavior? Is it due to deploying it as a GPO that's causing this?
Thanks in advance!
Lucas
abbodi1406 commented
Who knows
unlike previous versions, last version of the script doesn't embed any binaries, just helper vbscript and powershell codes