mirror of
https://github.com/amidaware/tacticalrmm.git
synced 2026-04-26 06:55:52 +03:00
[GH-ISSUE #96] Bug: Microsoft Defender ATP Malware detection Trojan:Win32/Fuery.C!cl #1998
Labels
No labels
In Process
bug
bug
dev-triage
documentation
duplicate
enhancement
fixed
good first issue
help wanted
integration
invalid
pull-request
question
requires agent update
security
ui tweak
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/tacticalrmm#1998
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @Cannonballitk on GitHub (Sep 9, 2020).
Original GitHub issue: https://github.com/amidaware/tacticalrmm/issues/96
Microsoft Defender ATP shows the winagent-v0.10.2.exe as Trojan.
Probably a false positive but nice to fix.
https://imgur.com/KO58TkX
tacticalrmm-virus.pdf
@wh1te909 commented on GitHub (Sep 10, 2020):
Lol yea obv it's a false positive but I understand why AV picks it up, it basically is a legal virus xD.
Nothing I can do without code signing the executable which I cannot afford to pay the yearly fee and even then I would have to contact all the AV companies and get it whitelisted. MeshCentral pays to code sign their executable and they still have issues with AV flagging it...
So you'll need to add it to AV exceptions, I had to as well on all my machines.
Whitelist these 3 dirs
C:\salt
C:\Program Files\Mesh Agent
C:\Program Files\TacticalAgent