wavestone-cdt / EDRSandblast

1.51k stars 278 forks source link

Windows Defender flagging #5

Closed k4nfr3 closed 2 years ago

k4nfr3 commented 2 years ago

Hello,

Fab tool :-) I was surprised that Windows Defender is now flagging my compiled binary. I looked at strings that could flag it but without success. The signature was "VirTool:Win64/Edirwip.A"

Strangely if you disable in Code Generation / Security Check to Disable Security Check (/GS-) it's no longer flagged

Not really an issue, but I thought it could be shared if somebody searches for it. Regards

k4nfr3 commented 2 years ago

auto close