I ruined my vacation by reverse engineering WSC
11–20 of 196 posts
Re: I ruined my vacation by reverse engineering WSC
#12The most invasive but effective way I've found to disable Defender is to boot into a live Linux USB, rename "C:\ProgramData\Microsoft\Windows Defender", and create an empty file in its place.
It's weird that windows wouldn't have a signed manifest that would detect that
Re: I ruined my vacation by reverse engineering WSC
#13Is the point to actually disable defender or to highlight a vulnerability?
That is one possible point, but om machines with low memory, (like a lab full of 8Gb potatoes) this is a godsend. These lab PCs are so stripped down, that the only thing using most of the memory is WD. You should be able to make a normal mode to run full security and a gaming mode just run a semi large game,and yes, this does expose a vulnerability,but it can be easily brought back up.
Re: I ruined my vacation by reverse engineering WSC
#14Why would you want to disable WSC?
Re: I ruined my vacation by reverse engineering WSC
#15https://github.com/es3n1n/defendnot/blob/master/defendnot-lo...
If you're curious what's actually going on there:
https://github.com/es3n1n/defendnot/blob/master/cxx-shared/s...
Re: I ruined my vacation by reverse engineering WSC
#16Re: I ruined my vacation by reverse engineering WSC
#17This is cursed: https://github.com/es3n1n/defendnot/blob/master/defendnot-lo... If you're curious what's actually going on there: https://github.com/es3n1n/defendnot/blob/master/cxx-shared/s...
Re: I ruined my vacation by reverse engineering WSC
#18Re: I ruined my vacation by reverse engineering WSC
#19What does CTF stand for?
Re: I ruined my vacation by reverse engineering WSC
#20What does CTF stand for?