We are using Outlook 2016 (365) and getting widespread 'CallerCheck exploit prevented in Microsoft Outlook.'
How do I determine if this is outlook or a 3rd party plugin. We all have one plugin in particular, from Newforma.
This happened to a user right after updating to Windows 10 build 1803 today. In the HitmanPro.Alert entry in the Application Log I see:
Callee Type CreateProcess
Sophos is up to date. The only way I could get him up and running in Outlook was to temporarily turn off exploit scanning. I've opened a case with Sophos as well.
We had the same issue with Outlook 2016 until 11 o'clock, with a client being updated to Windows 10 build 1803.
However the issue disappered, either this is due to the latest Office Update or to a correction made by Sophos.
Same here - the problem went away by itself.