Blogs
Links
Archives
Categories
Social networks
Awards
Sponsors
Recent Comments
- Bernd Kastenbrot on Windows Server 2022: RDS bug (RDCB role broken) caused by KB5011497, not fixed in May 2022
- Bruce Roberts on Office 365 version 2206.15330.20196: Excel bug prevents display of cell contents (OP396850)
- Lars220 on Office 365 version 2206.15330.20196: Excel bug prevents display of cell contents (OP396850)
- AstraLocker on AstraLocker terminates activities and releases Decryptor
- AstraLocker on AstraLocker 2.0: Infection via Word attachment
Meta
Recent Comments
- Bernd Kastenbrot on Windows Server 2022: RDS bug (RDCB role broken) caused by KB5011497, not fixed in May 2022
- Bruce Roberts on Office 365 version 2206.15330.20196: Excel bug prevents display of cell contents (OP396850)
- Lars220 on Office 365 version 2206.15330.20196: Excel bug prevents display of cell contents (OP396850)
- AstraLocker on AstraLocker terminates activities and releases Decryptor
- AstraLocker on AstraLocker 2.0: Infection via Word attachment
Archives
Categories
Meta
Tag Archives: Defender
Windows issue: Defender collides with FMAPOService
[German]In April 2022, I had reported issues with Windows Defender on Windows 10 (20H2). From extreme RAM usage to startup problems with Word or effects like black screen after user login has been observed/reported. Some issues were supposedly fixed by … Continue reading
Advertising
Windows Defender Application Control: Recommended blocking rules (May 2022)
[German]In Windows 10 and Windows 11, Windows Defender Application Control (WDAC) and AppLocker are available as features in the enterprise variants (Windows 10/11 Enterprise) as security features (see this post). Now, Microsoft has published a list of recommended blocking rules … Continue reading
Microsoft Defender for Business available
[German]Microsoft has announced the general availability of Defender for Business as of May 2, 2022. It is a standalone endpoint antivirus protection solution for small and medium-sized businesses. So, the solution goes beyond the Windows-integrated Defender in functionality, providing malware, … Continue reading
Advertising
Defender for Endpoint causes issues with Windows 10 20H2 clients (April 26, 2022)
[German]Does Word take an unusually long time to start on Windows 10 clients? Does the Windows 10 20H2 client go into black screen for 2 minutes or more after user login? Or does the event viewer seem to hang when … Continue reading
Microsofts Defender flags Google Chrome Updates falsely as malicious (April 20, 2022)
[German]Microsoft's Defender for Endpoint (an enterprise security platform, see Got lost in Defender? There is something like a Defender Cheat Sheet available) seems to have run a bit amok once again. Administrators reported that since April 20, 2022, Defender has … Continue reading
Advertising
Defender signatures cause extreme RAM usage (April 2022)
[German]Brief information for administrators of Windows systems, especially Windows Server. I have received information that the signature files for Microsoft Defender that have been delivered recently are causing problems. On some Windows Server systems, RAM usage may become unmanageable, affecting … Continue reading
Got lost in Defender? There is something like a Defender Cheat Sheet available
[German]Indiscreet question to the readers of this blog: Do you still have an overview of exactly what Microsoft is currently doing with its Defender? I confess that I got lost a long time ago and get confused when blogging because … Continue reading
New security feature allows driver block lists in Windows 10, 11 and Windows Server
[German]Microsoft is working on improving the protection of the current versions of Windows 10, Windows 11 and Windows Server 2016 and their successors against harmful drivers. For this purpose, Windows Defender Application Control (only available in Enterprise editions) or HVCI … Continue reading
Advertising
Microsoft warns of (fixed) Defender spoofing vulnerability
Microsoft has sent a security alert by mail as of 30 March 2022, with a warning about a the vulnerability CVE-2022-23278. This is a spoofing vulnerability in Microsoft Defender for Endpoint, which has already been closed in Android and iOS … Continue reading
Microsoft Defender falsely detected Office updates as ransomware activity (03/16/2022)
[German]It looks like a classic false positive that Microsoft Defender pulled yesterday (Wednesday, March 16, 2022). If you suddenly had Microsoft Office updates quarantined as ransomware on your systems, you were affected by this case. Advertising