Rclone 1.5.6 - Windows finds Trojan:Win32/CryptInject!MSR

Not sure that will work. I found this signature in my defender definitions:

OFN:rclone.exe
rclone config reconnect
RCLONE
github.com/rclone/rclone/cmd
github.com/rclone/rclone/vfs

There are also behavioural signatures for rclone as well as other file synchronization tools like MEGAsync and FreeFileSync. It seems they are really afraid of data exfiltration.

1 Like