Defender issue with High risk device

Anonymous
2025-01-16T15:08:24+00:00

Customer has a server 2016 onboarded to Defender that shows 'High risk' with 5 active alerts and 1 incident.

This customer wants to have this cleaned up.

The Defender portal shows nothing when trying to access these alerts and incidents.

View all is completely empty.

I've offboarded and re-onboarded but still stuck in that state.

Any ideas on how to clear this or if this is real?

Windows for business | Windows Server | Devices and deployment | Other

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Anonymous
    2025-01-17T06:11:07+00:00

    Hello

    Thank you for posting in Microsoft Community forum.

    Based on the description, I understand your question is related to Windows Defender.

    Since there are no engineers dedicated to this topic in this forum. in order to be able to get a quick and effective handling of your issue, I recommend that you repost your question in the Q&A forum, where there will be a dedicated engineer to give you a professional and effective reply.

    Here is the link for Q&A forum.

    Questions - Microsoft Q&A

    Click the "Ask a Question" button in the upper right corner to post your question and select any tags related to your productions.

    Thank you for your understanding and support. If you have any question or concern, please feel free to let us know.

    Have a nice day.

    Best Regards,

    Molly

    0 comments No comments