Defense+ of CPF v. 3.0.13.268 Failed blocking vbs script

Why CPF 3.0.13.268 Defense+ still allow VBS script installed by worm which launch from inf file