Share via

Microsoft recently announced anti-keylogger protection with Microsoft Defender

Anonymous
2024-09-29T20:54:35+00:00

Microsoft recently announced anti-keylogger protection with Microsoft Defender, but it is not clear whether this feature is free or you have to purchase it, because in an article it mentions that Microsoft for Endpoint is the one that detects keyloggers, so how to verify that Windows has anti-keylogger protection?

Windows for home | Windows 10 | Security and privacy

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question.

0 comments No comments

3 answers

Sort by: Most helpful
  1. Syed Ali Zamin Shah 1,430 Reputation points MVP
    2024-09-29T21:09:11+00:00

    Yes, if you’re running Windows 11 or Windows 10, Microsoft Security does come with free anti-key logger protection. For more details, you can read them from the link below.

    https://techcommunity.microsoft.com/t5/windows-it-pro-blog/keylogging-malware-protection-built-into-windows/ba-p/4256289#:~:text=Microsoft%20Defender%20Antivirus%20can%20detect,or%20damage%20data%20on%20devices.

    4 people found this answer helpful.
    0 comments No comments
  2. Rob Koch 25,875 Reputation points Volunteer Moderator
    2024-09-30T05:53:35+00:00

    The Tech Community Live article is completely clear about the fact that the Microsoft Defender antivirus in Windows 10 and 11 already provides the basic ability to detect and remove keylogger malware, per the following sentence near the end of the document.

    "Built-in protection in Windows 11 and Windows 10 helps protect against malware keyloggers by preventing them from getting into the system and running."

    This fact is supported by simply searching the Microsoft Security Intelligence - Threats description database as follows for the term Keylogger, though it's possible this doesn't display the Screen Scraper malware detections also mentioned in the article.

    Threat description search results - Microsoft Security Intelligence

    The additional protection provided by the commercial security added by Microsoft Defender for Endpoint is mentioned as a way to enhance protection for businesses where things like protecting from the possibility an employee with Administrator access to their own device might disable the normal Defender protection for example. This was mentioned in the preceding paragraph from the same document, an excerpt of which follows.

    "The image below shows the detection of the three keyloggers we tested above. Although real-time protection was disabled earlier, Microsoft Defender Antivirus is shown as a detection source because enhanced detection and response (EDR) in Microsoft Defender for Endpoint can request that Microsoft Defender Antivirus scan files."

    So the basic protection from keyloggers has been included in the Defender bundled with Windows going back years, as the dates stamped for each of these detections shows, while the added protection for Endpoint actually comes from the enhanced detection and response (EDR) feature contained in that commercial product, which is really only necessary to protect from stupid user tricks or other attacks that might have already disabled the Defender protection.

    Rob

    2 people found this answer helpful.
    0 comments No comments
  3. John Jefferson Doyon 66,130 Reputation points Independent Advisor
    2024-09-29T22:16:22+00:00

    Hi JL, I'm John, a fellow Microsoft user like you.

    I believe you're referring to this Microsoft article: https://techcommunity.microsoft.com/t5/windows-...

    Unfortunately, there's currently no information on whether this feature is free or requires a purchase Microsoft 365. I suggest joining the conversation in that thread by clicking 'Sign in' at the top right corner of the page to comment and ask for more details.

    Please let me know if you have any further questions or concerns.

    Regards,

    John J.D.

    1 person found this answer helpful.
    0 comments No comments