Replies: 9 comments
-
Was it triggered from one of the binaries we supplied? Or did you build it yourself? |
Beta Was this translation helpful? Give feedback.
-
From your binary. It runs for about 25 seconds "Scanning c:" and then it comes up. |
Beta Was this translation helpful? Give feedback.
-
Useless side note that may or may not help: |
Beta Was this translation helpful? Give feedback.
-
Quick feedback : I had no problem in running the program on win 10 with SentinelOne av. |
Beta Was this translation helpful? Give feedback.
-
I had no problems running this (1.2.17) yesterday on Win10 with Defender for Endpoints |
Beta Was this translation helpful? Give feedback.
-
Beta Was this translation helpful? Give feedback.
-
I suspect the ransomware behavior detection component of Windows 11 noticed the sequential traversal of the file system as something to block. It appears our code-signing certificate isn't enough to overcome the suspicion of Windows Defenders scoring system on Windows 11. That is rather annoying. |
Beta Was this translation helpful? Give feedback.
-
I am getting a similar message from Defender when running on Windows 11. It is saying the program is putting a file in the temp folder of AppData. |
Beta Was this translation helpful? Give feedback.
-
Hello,
Your tool is triggering AV's. I tried looking through your code but could not find anything suspicious at a glance, therefor this submit.
What it finds is the following:
It says: Serious threat, blocked and removed.
Hope it helps.
Beta Was this translation helpful? Give feedback.
All reactions