Hi JJJ Ham,
The events you've observed in the Windows Defender Operational log are likely part of the normal initialization and updating processes of Windows Defender, now known as Microsoft Defender Antivirus. Here's an explanation of each event:
- Event on November 29th - "Initialize Misc Config Library" to "PostPlatformUpdate": This event corresponds with a Windows Defender update. The change from the "Old value" to the "New value" suggests a transition in the initialization stage of Defender components. "Initialize Misc Config Library" likely refers to setting up various configuration settings, while "PostPlatformUpdate" indicates that this stage is completed following an update to the Defender platform.
- Subsequent Events - "PostPlatformUpdate" to "Service Started Successfully": These events show a sequential process in which Windows Defender progresses through different initialization stages. "Loading Engine" likely refers to the loading of the core antivirus engine, a critical part of Defender's functionality. The final message, "Service Started Successfully," confirms that the Defender service has successfully started and is operational.
These types of events are normal for the operation and updating of Microsoft Defender Antivirus. The reason you started noticing these events from the 29th could be due to a particular update or a change in the logging behavior of Windows Defender. It's common for software updates to adjust or enhance how they log events.
The absence of these events on your Windows 11 system might be due to different logging methods in Windows 10 and Windows 11, or it could be because Windows Defender operates differently when another antivirus software is in use. The registry keys related to these logs might also vary or be used differently in Windows 11.
In conclusion, the events you've noticed are a standard part of Windows Defender's operation and not a cause for concern, especially since they align with an update process. The variation in logs between Windows 10 and Windows 11 could be attributed to differences in the operating system versions or configurations.
Regards,
Manson |Microsoft Community Support Specialist