Forum Discussion
Windows Defender AntiVirus with Intune
rahuljindal-MVP Quick scan I can see is working already in passive mode. That is not really my question, My question is that Defender AV does not show enabled in security providers in Virus and threat protection.
From PowerShell:
Get-MpComputerStatus |Fl *abled*
AMServiceEnabled : True
AntispywareEnabled : True
AntivirusEnabled : True
BehaviorMonitorEnabled : True
IoavProtectionEnabled : False
NISEnabled : False
OnAccessProtectionEnabled : False
RealTimeProtectionEnabled : True
===========
Get-MpComputerStatus |Fl *scan*
FullScanAge : 4294967295
FullScanEndTime :
FullScanOverdue : False
FullScanRequired : False
FullScanSignatureVersion :
FullScanStartTime :
LastFullScanSource : 0
LastQuickScanSource : 2
QuickScanAge : 0
QuickScanEndTime : 5/31/2024 12:43:13 PM
QuickScanOverdue : False
QuickScanSignatureVersion : 1.411.383.0
QuickScanStartTime : 5/31/2024 12:33:52 PM
RealTimeScanDirection : 0
- rahuljindal-MVPMay 31, 2024Bronze Contributor“However the below is showing in Virus and Threat Protection.” - There was no question. I had to interpret what you might want to ask and the screenshot highlighted periodic scanning.
“My question is that Defender AV does not show enabled in security providers in Virus and threat protection.” - Are your devices onboarded on to Defender for Endpoint or are you just managing Defender AV?- AhmedSHMKJun 12, 2024Brass ContributorYes I realized, Sorry for that, I dont think pictures can be added here for some reason, Generally speaking Defender AV works with Intune, Passive mode and does not show in security providers likely since Symantec AV is in place and is taking the action, I assume once symantec is removed, Defender AV will be in active mode? or maybe something else will be needed
- rahuljindal-MVPJun 12, 2024Bronze ContributorYes, when the non MS security solution is removed then Defender AV will switch to active mode.