Windows Defender Is Becoming the Powerful Antivirus That Windows 10 Needs

Discussion in 'other anti-virus software' started by Secondmineboy, Jan 30, 2016.

  1. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,640
    Location:
    USA
    Ok, so I downloaded the free copy of O&O Defrag from this thread:
    https://www.wilderssecurity.com/threads/o-o-defrag-20-professional-edition-giveaway.405613/
    This is also being blocked by Windows Defender. This file was digitally signed in March by O&O Software. I'm starting to get upset... I'm hoping Microsoft put out a bad Windows Defender update today. Otherwise there isn't much excuse for the day I am having with it. :mad:

    Edit-Just updated. I can run the file now.
     
    Last edited: Jul 2, 2018
  2. shmu26

    shmu26 Registered Member

    Joined:
    Jul 9, 2015
    Posts:
    1,549
  3. clocks

    clocks Registered Member

    Joined:
    Aug 25, 2007
    Posts:
    2,788
    Why not just let windows manage/defrag drives? Are standalone defrag programs a remnant form the 90s? I have not used one in probably over 10 years, especially since tests at the time show zero improvement to performance.
     
  4. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,640
    Location:
    USA
    Not wanting to get too far off topic but I have some external drives I would like to optimize and when the price is free it does a much better job than Windows. My system drives are SSD, so no point there.
     
  5. Djigi

    Djigi Registered Member

    Joined:
    Aug 13, 2012
    Posts:
    554
    Location:
    Croatia
    Does WD have quarantine?...so people can get it out
     
  6. shmu26

    shmu26 Registered Member

    Joined:
    Jul 9, 2015
    Posts:
    1,549
    It has quarantine, but sometimes the new, advanced protections just zap it and fail to put it into quarantine. Then you need to take the missing file from your mounted system image. :)
     
  7. guest

    guest Guest

    Microsoft Resumes Delivering Windows 7 Defender Definition Updates After 2 Weeks
    July 5, 2018
    https://www.bleepingcomputer.com/ne...-7-defender-definition-updates-after-2-weeks/
     
  8. remco8264

    remco8264 Registered Member

    Joined:
    Apr 25, 2012
    Posts:
    29
    In the latest Insider Preview build, Windows Defender Application Guard can be configured inside the Security Center :)

    Source: https://blogs.windows.com/windowsex...ncing-windows-10-insider-preview-build-17713/
     
  9. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    With the upcoming RS5/1809 branch, Attack Surface Reduction rules becomes available to everyone, with easy enabling in the Windows Security app.

    You already know how powerful the ASR rules are, so I'm sure you will agree that this is a big step forward once again.

    I very much like Microsoft's approach to this. Build new powerful features, let researchers hammer at them to find areas that needs further strengthening, spend time further refining them and when ready for mass adoption, then include the features one by one in the Windows Security app for easy access and control thereof.

    We have seen it with the Block at First Sight feature that has been massively improved with every new branch released, for many branches in a row now. 1803 expanded its reach to now also include non-PE files.

    And with RS5/1809 we see ASR rules becoming available in the Windows Security app.

    And as already mentioned in thread, RS5/1809 will also bring easy access to settings for Windows Defender Application Guard right there in the Windows Security app also.

    So much power available without anybody having to jump through hoops to enable it. I love it !! :thumb::thumb:
     
  10. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    I have no idea if the soundcard you mention are recent or antique. (didn't look it up, since I'm on mobile right now with the nearest celltower so far away that each packet arrives by pigeon)
    But driver guidelines has been available from Microsoft for ages now.
    So if Creative Labs still haven't produced any drivers that are compliant and the hardware are recent of course - then your best option are to be persistent and continue asking Creative Labs nicely for new drivers.

    This is 100% a hardware vendor issue - they need to stay current and provide drivers that are capable of functioning on a modern secure OS.
     
  11. shmu26

    shmu26 Registered Member

    Joined:
    Jul 9, 2015
    Posts:
    1,549
    Yes, it does sound like a good approach.
     
  12. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    It's great. :)
    Easy access to powerful features without complicated options, and a lot more users are comfortable using it. :thumb:

    A similar thing can be seen with Andy Ful's great tool, ConfigureDefender available on GitHub
    Although all the most powerful settings of Windows Defender, ASR rules, Network Protection and so forth are easily accessible through GPO/PowerShell, then a lot more users will use it when manageable through a UI.

    So Microsoft's approach with making more features and their settings available in the Windows Security app will be welcomed with open arms :thumb:
     
  13. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    March-April 2018 test results: More insights into industry AV tests.
    Much more in blog post here :
    https://cloudblogs.microsoft.com/mi...results-more-insights-into-industry-av-tests/

    Also download the complete transparency report on March-April 2018 AV-TEST results here (PDF) :
    Code:
    https://query.prod.cms.rt.microsoft.com/cms/api/am/binary/RE2ouJA
     
  14. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,561
    Location:
    The Netherlands
    This is cool and all, but can they also explain why they failed to classify 31 samples (user dependent) as malware in this test? :rolleyes:

    https://www.av-comparatives.org/tests/business-security-test-2018-march-june/
    https://www.wilderssecurity.com/thr...ntivirus-that-windows-10-needs.383448/page-74
     
  15. JRViejo

    JRViejo Super Moderator

    Joined:
    Jul 9, 2008
    Posts:
    97,808
    Location:
    U.S.A.
  16. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,640
    Location:
    USA
  17. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,777
    Location:
    Texas
    Protecting the modern workplace from a wide range of undesirable software
     
  18. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    Protecting the protector: Hardening machine learning defenses against adversarial attacks.
    Much more in blog post here : https://cloudblogs.microsoft.com/mi...earning-defenses-against-adversarial-attacks/
     
  19. Martin_C

    Martin_C Registered Member

    Joined:
    Dec 4, 2014
    Posts:
    525
    Slides from Jugal Parikh, Holly Stewart, & Randy Treit's talk - "Protecting the Protector, Hardening Machine Learning Defenses Against Adversarial Attacks" - at Black Hat USA 2018 are now available.

    Slides can be downloaded here (PDF) :
    Code:
    http://i.blackhat.com/us-18/Thu-August-9/us-18-Parikh-Protecting-the-Protector-Hardening-Machine-Learning-Defenses-Against-Adversarial-Attacks.pdf
    Absolutely amazing work Microsoft has been doing to make machine learning models more resilient to adversarial attacks and on how ensemble models can catch malware that singular models can't. :thumb: :thumb:
     
  20. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,593
    Location:
    U.S.A.
    Encouraging to see that Microsoft is finally embracing technology other AV vendors have been using for over 20 years:
    https://www.welivesecurity.com/2017/06/20/machine-learning-eset-road-augur/
     
  21. stapp

    stapp Global Moderator

    Joined:
    Jan 12, 2006
    Posts:
    24,059
    Location:
    UK
    I think Microsoft have been aware of Machine Learning in many fields for quite a while now.

    https://www.infoworld.com/article/2886132/machine-learning/how-machine-learning-ate-microsoft.html
     
  22. niki

    niki Registered Member

    Joined:
    Jun 9, 2010
    Posts:
    365

    Attached Files:

  23. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,126
    Location:
    U.S.A. (South)
  24. xxJackxx

    xxJackxx Registered Member

    Joined:
    Oct 23, 2008
    Posts:
    8,640
    Location:
    USA
  25. guest

    guest Guest

    Microsoft: 5 tips for developers to reduce malware false positives
    Digitally signing files and keeping a good reputation are among the best practices Microsoft lays out for developers.
    August 17, 2018

    https://www.techrepublic.com/articl...developers-to-reduce-malware-false-positives/
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.