Remove Threat Defender

Handian Sudianto 4,471 Reputation points
2023-11-24T00:28:58.16+00:00

How we can delete /remove the threat on windows defender?

Yesterday this threat i allow to run but now i want to remove this, when i check there are no option to delete /remove this/

User's image

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,599 questions
Microsoft Defender for Cloud
Microsoft Defender for Cloud
An Azure service that provides threat protection for workloads running in Azure, on-premises, and in other clouds. Previously known as Azure Security Center and Azure Defender.
1,270 questions
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Ian Xue (Shanghai Wicresoft Co., Ltd.) 34,191 Reputation points Microsoft Vendor
    2023-11-24T07:20:35.3466667+00:00

    Hi,

    Please run Remove-MpThreat in PowerShell and see if the threat can be removed.

    https://learn.microsoft.com/en-us/powershell/module/defender/remove-mpthreat?view=windowsserver2022-ps

    Best Regards,

    Ian Xue


    If the Answer is helpful, please click "Accept Answer" and upvote it.

    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


  2. MotoX80 32,746 Reputation points
    2023-11-27T16:48:23.1666667+00:00

    According to this site, that threat is defined by your system administrator. I would think that there is no remove/delete option because Defender doesn't know how to do that.

    Click on the "See Details" and look for an application name. You probably need to uninstall the app, or upgrade to a version that isn't vulnerable to whatever exploit that was identified by your admins.

    Ask your security team what they defined and what they want you to do with it.

    https://www.microsoft.com/en-us/wdsi/threats/malware-encyclopedia-description?Name=EUS%3AWin32%2FCustomEnterpriseBlock!cl

    0 comments No comments