6 ms·
His comment in /r/sysadmin: "Setting a Windows Defender exception to the folder does not prevent the quarantine from occurring. I re-ran this test three times
by ooboe 5y ago
His comment in /r/sysadmin:
"Setting a Windows Defender exception to the folder does not prevent the quarantine from occurring. I re-ran this test three times trying exceptions and even the entire NAS drive as on the excluded list."
Windows Defender is overriding the user whitelist?
- RachelF 5y agofrom that forum it also seems like Windows Defender is deleting a .txt file containing the source code.
- ooboe 5y agoYes, if true, this would invalidate the "heuristics error on exe" argument.
- sneak 5y agoIn addition, Windows also quarantines and deletes innocuous Windows activation crack tools that contain no malware whatsoever, but can be used to activate Windows independently of Microsoft. It's really amazing the attitude Microsoft takes regarding hardware that isn't theirs, including the nonconsensual forced autoupdate.
- aardvarkr 5y agoOh no, they’re making the world safer by encouraging the adoption of the latest security patches and bug fixes? And giving away best-in-class security software that you can disable at any time? How evil. You must really have loved the days of Norton Antivirus.
- dexterhaslem 5y agoyou may have misread the parent comment? it is deleting things completely unrelated to malware
- gogopuppygogo 5y agoI was under the impression that with Windows 10 we shifted to the product being the users data. The customers are now advertisers.
- eurasiantiger 5y agoFrom what I’ve understood, that is a correct impression.
- jeroenhd 5y agoThat's not just a Windows feature, though. My experience with _every other antivirus_ has always been that anything related to cracking or keygens is flagged as a virus. In my opinion, Windows Defender is still the best antivirus software for consumers. That's not a compliment to Windows Defender, that's an insult to antivirus companies all over the world.
- tomc1985 5y agoI'm pretty happy with ESET NOD32
- cesarb 5y agoFor future reference, that comment seems to be at https://old.reddit.com/r/sysadmin/comments/oof29b/windows_defender_july_update_will_delete/ https://old.reddit.com/r/sysadmin/comments/oof29b/windows_de...
- dataflow 5y agoI wonder if it's related to the tamper protection setting? I know that setting makes it ignore other settings like group policy, though I've never seen it ignore whitelists, but maybe they've changed that?
- hulitu 5y agoMicrosoft knows better. We are here to protect you.
- raverbashing 5y agoPeople who ignored the AV exception requested by Kaseya didn't get a surprise ransomware in their systems
- dexterhaslem 5y agoughhh this is why i ended up completely disabling it
- npteljes 5y agoAbsolutely it does. I had one problematic file that I had to add it to the whitelist every month or so, otherwise Defender removed it. Nevermind the fact that adding it to the whitelist was a PITA, I never figured out why the setting haven't stuck; the file in question wasn't changing at all.