Microsoft Defender Antivirus on Windows Server 2016 and Windows Server 2019 automatically enrolls you in certain exclusions, as defined by your specified server role. These exclusions do not appear in the standard exclusion lists that are shown in the Windows Security app. In addition to server role-defined automatic exclusions, you can add or remove custom exclusions. […]
Category: Microsoft Endpoint
Configure exclusions for files opened by processes (Microsoft)
You can exclude files that have been opened by specific processes from Microsoft Defender Antivirus scans. See Recommendations for defining exclusions before defining your exclusion lists. This article describes how to configure exclusion lists. Examples of exclusions EXAMPLES OF EXCLUSIONS Exclusion Example Any file on the machine that is opened by any process with a specific file […]
Configure and validate exclusions based on file extension and folder location (Microsoft)
You can define exclusions for Microsoft Defender Antivirus that apply to scheduled scans, on-demand scans, and always-on, real-time protection and monitoring. Generally, you shouldn’t need to apply exclusions. If you do need to apply exclusions, you can choose from several different kinds: Exclusions based on file extensions and folder locations (described in this article) Exclusions for files that are […]
Configure and validate exclusions for Microsoft Defender Antivirus scans
You can exclude certain files, folders, processes, and process-opened files from Microsoft Defender Antivirus scans. Such exclusions apply to scheduled scans, on-demand scans, and always-on real-time protection and monitoring. Exclusions for process-opened files only apply to real-time protection. Configure and validate exclusions To configure and validate exclusions, see the following: Configure and validate exclusions based on file name, […]
Restore quarantined files in Microsoft Defender Antivirus
If Microsoft Defender Antivirus is configured to detect and remediate threats on your device, Microsoft Defender Antivirus quarantines suspicious files. If you are certain a quarantined file is not a threat, you can restore it. Open Windows Security. Select Virus & threat protection and then click Protection history. In the list of all recent items, filter on Quarantined Items. Select […]
Configure Microsoft Defender Antivirus scanning options
Use Microsoft Intune to configure scanning options For more information, see Configure device restriction settings in Microsoft Intune and Microsoft Defender Antivirus device restriction settings for Windows 10 in Intune. Use Microsoft Endpoint Manager to configure scanning options For details on configuring Microsoft Endpoint Manager (current branch), see How to create and deploy antimalware policies: Scan settings. Use Group […]
Run and review the results of a Microsoft Defender Offline scan
Microsoft Defender Offline is an antimalware scanning tool that lets you boot and run a scan from a trusted environment. The scan runs from outside the normal Windows kernel so it can target malware that attempts to bypass the Windows shell, such as viruses and rootkits that infect or overwrite the master boot record (MBR). […]
Configure and run on-demand Microsoft Defender Antivirus scans
You can run an on-demand scan on individual endpoints. These scans will start immediately, and you can define parameters for the scan, such as the location or type. When you run a scan, you can choose from among three types: Quick scan, full scan, and custom scan. In most cases, use a quick scan. A […]
Review Microsoft Defender Antivirus scan results
After a Microsoft Defender Antivirus scan completes, whether it is an on-demand or scheduled scan, the results are recorded and you can view the results. Use Configuration Manager to review scan results See How to monitor Endpoint Protection status. Use PowerShell cmdlets to review scan results The following cmdlet will return each detection on the endpoint. If there are […]
Report on Microsoft Defender Antivirus
Microsoft Defender Antivirus is built into Windows 10, Windows 11, Windows Server 2019, Windows Server 2022, and Windows Server 2016. Microsoft Defender Antivirus is of your next-generation protection in Microsoft Defender for Endpoint. Next-generation protection helps protect your devices from software threats like viruses, malware, and spyware across email, apps, the cloud, and the web. […]