Why did Windows Defenders fail to stop the threats from running?

Page 1 of 2 12 LastLast

  1. Posts : 7,607
    Windows 10 Home 20H2
       #1

    Why did Windows Defenders fail to stop the threats from running?


    I have already used Win10XPE to remove the "Affected items" shown in the attached screenshot. I just want to know why Windows Defender failed to stop the active threats from running on my device. When I clicked on "Action"-->"Remove", nothing happened, so I had to use Win10XPE, which allowed me to remove them.
    Attached Thumbnails Attached Thumbnails Why did Windows Defenders fail to stop the threats from running?-threat-1.jpg  
      My Computer


  2. Posts : 1,255
    Windows 10 Pro
       #2

    Most likely Windows Defender tried to stop the threat but was unable to do so. There are no guarantees. Malware has become VERY sophisticated in recent years and has developed methods to prevent it from being shut down, or in some cases from being detected at all. It is war between malware and anti-malware products and each side is continually trying to gain an advantage over the other.

    A competing anti-malware product may have been able to do so, or it may not have detected it. Each product has it's own strengths and weaknesses. And that situation is continually changing as each product is updated.
      My Computer


  3. Posts : 7,607
    Windows 10 Home 20H2
    Thread Starter
       #3

    LMiller7 said:
    Malware has become VERY sophisticated in recent years
    It was sophisticated enough to disable Windows Defender's "Virus & threat protection" as shown below.
    Attached Thumbnails Attached Thumbnails Why did Windows Defenders fail to stop the threats from running?-image-1.jpg  
      My Computer


  4. Posts : 16,950
    Windows 10 Home x64 Version 22H2 Build 19045.4170
       #4

    Matthew,

    Were you, by any chance, using an Admin account whilst online & with UAC at its default setting? Several attacks rely on those conditions but can be thwarted by setting UAC to maximum.

    Denis
      My Computer


  5. Posts : 7,607
    Windows 10 Home 20H2
    Thread Starter
       #5

    I have set it to "Never Notify".
      My Computer


  6. Posts : 16,950
    Windows 10 Home x64 Version 22H2 Build 19045.4170
       #6

    Then any malware that manages to get into your computer can assume Admin/System privileges and install whatever it wants without any indications that you would notice.

    Denis
      My Computer


  7. Posts : 7,607
    Windows 10 Home 20H2
    Thread Starter
       #7

    If I recall correctly, the culprit was UC Browser portable: "ucbrowserportable-7.0.185.1002-6cbe750.exe". Is it allowable to post the link here? Three days ago, I could download it. Now, Chrome has blocked it, but I can still download it via Opera.
    VirSCAN.org - Free Multi-Engine Online Virus Scanner v1.02, Supports 47 AntiVirus Engines! says "Scanner results:8%Scanner(s) (4/49)found malware!".
      My Computer


  8. Posts : 16,950
    Windows 10 Home x64 Version 22H2 Build 19045.4170
       #8

    Matthew Wai said:
    If I recall correctly, the culprit was UC Browser portable: "ucbrowserportable-7.0.185.1002-6cbe750.exe". Is it allowable to post the link here? Three days ago, I could download it. Now, Chrome has blocked it, but I can still download it via Opera.
    Since your conclusion is that it contained malware it would seem to be inappropriate to post a link to it.

    You could submit it as a sample to MS: -
    Windows defender,
    Virus & threat protection,
    Virus & threat protection settings - Manage settings,
    Automatic sample submission - Submit a sample manually.

    Denis
      My Computer


  9. Posts : 7,607
    Windows 10 Home 20H2
    Thread Starter
       #9

    I have just submitted it. I am not sure whether it contains malware because I might have clicked on something else by mistake just before downloading it a few days ago. I cannot remember clearly.
      My Computer


  10. Posts : 7,607
    Windows 10 Home 20H2
    Thread Starter
       #10

    The download is "ucbrowserportable-7.0.185.1002_98ebffb.iso", which contains "ucbrowserportable-7.0.185.1002-6cbe750.exe". I just mounted the ISO file and got the following:
    Attached Thumbnails Attached Thumbnails Why did Windows Defenders fail to stop the threats from running?-threats-found.jpg  
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 15:15.
Find Us




Windows 10 Forums