Skip to main content

Defender Antivirus — AV Configuration

Win - OIB - ES - Defender Antivirus - D - AV Configuration - v3.3

CMMC Control Mapping Matrix

NameValue
Basics
NameWin - OIB - ES - Defender Antivirus - D - AV Configuration - v3.3
Description
Profile typeSettings catalog
CategoryAntivirus
Policy typeMicrosoft Defender Antivirus
Platform supportedWindows 10 and later
Created21 August 2024 12:15:30
Last modified05 December 2024 19:34:28
Scope tagsDefault
Table 5. Basics - Win - OIB - ES - Defender Antivirus - D - AV Configuration - v3.3
NameValue
Defender
Allow Archive ScanningAllowed. Scans the archive files.
Allow Behavior MonitoringAllowed. Turns on real-time behavior monitoring.
Allow Cloud ProtectionAllowed. Turns on Cloud Protection.
Allow Email ScanningAllowed. Turns on email scanning.
Allow Full Scan Removable Drive ScanningAllowed. Scans removable drives.
Allow scanning of all downloaded files and attachmentsAllowed.
Allow Realtime MonitoringAllowed. Turns on and runs the real-time monitoring service.
Allow Scanning Network FilesAllowed. Scans network files.
Allow Script ScanningAllowed.
Allow User UI AccessAllowed. Lets users access UI.
Avg CPU Load Factor50
Check For Signatures Before Running ScanEnabled
Cloud Block LevelHigh
Cloud Extended Timeout50
Disable Catchup Full ScanDisabled
Disable Catchup Quick ScanDisabled
Enable Low CPU PriorityEnabled
Enable Network ProtectionEnabled (block mode)
PUA ProtectionPUA Protection on. Detected items are blocked. They will show in history along with other threats.
Real Time Scan DirectionMonitor all files (bi-directional).
Schedule Quick Scan Time660
Signature Update Interval1
Submit Samples ConsentSend safe samples automatically.
Disable Local Admin MergeDisable Local Admin Merge
Allow On Access ProtectionAllowed.
Threat Severity Default ActionNot configured
Remediation action for High severity threatsRemove. Removes files from system.
Remediation action for Severe threatsRemove. Removes files from system.
Remediation action for Low severity threatsBlock. Blocks file execution.
Remediation action for Moderate severity threatsRemove. Removes files from system.
Metered Connection UpdatesAllowed
Table 6. Settings - Win - OIB - ES - Defender Antivirus - D - AV Configuration - v3.3

📩 Don't Miss the Next Solution

Join the list to see the real-time solutions I'm delivering to my GCC High clients.