where is the quarantined defender files put?


  1. Posts : 1,257
    win10 PRO on 5 PC's and Linux mint
       #1

    where is the quarantined defender files put?


    i needed the drive free of some files , so was copying a folder I wanted, and Defender was objecting.
    So I added an exception, but maybe it did not take cause the file is nowhere to be found.

    It says e: which was the usb drive, so put in another usb drive, and selected to restore, but it is NOT restoring the missing file.
    It is the name that made defender react as it is an audio driver install patch program, and now is it gone?

    where is the quarantined defender files put?-image.png

    - - - Updated - - -

    How To Recover Files Deleted By Windows Defender Antivirus?.

    is it really that hard to restore??

    - - - Updated - - -

    I found the patch online. Only way to download was use Firefox, and I turned off Defender temporarily.
    Then I uploaded it to a folder on my google drive

    I have no idea what Defender did with the original file. But it certainly was not able to restore it, even though it had a menu option.
    When I made an 'exception' it never showed an exception in the list, so I suppose it never did make an exception.
      My Computer


  2. Posts : 1,612
    11, 10, 8.1 and 7 all Professional versions, and Linux Mint
       #2

    That patch - if it is the patch that suggests it will unlock the realtek device to enable Dolby 5.1 etc then I just fail to understand IF YOU KNOW THE RISK why you would even think of using such a so called patch.

    IF you do NOT know the risk, then please be informed that any such so called patch is to be treated as dangerous, possibly in some cases, not only placing adware/spyware on your computer, but malware to track your activity and steal passwords .

    See this
    Are there any guides for modifying/unlocking Realtek drivers yourself, instead of trusting randomly downloaded drivers? | TechPowerUp Forums
    and from there
    However as any IT professional will know, installing system-level drivers from an unknown origin is perhaps the most dangerous thing you can do to your computer.
    I do not know if the patch you downloaded did indeed have the detected
    hack tool: Win32/Keygen

    Name Hacktool:Win32/Keygen threat
    Threat Type Trojan, Password stealing virus, Banking malware, Spyware

    Trojans are designed to stealthily infiltrate victim's computer and remain silent thus no particular symptoms are clearly visible on an infected machine.

    Distribution methods Infected email attachments, malicious online advertisements, social engineering, software cracks.

    Damage Stolen banking information, passwords, identity theft etc.

    OR whether it is simply a false positive caused by the heuristic detection on Defender.
    What I DO KNOW is that your intention to restore is IMHO most inadvisable.

    Even if you could to run such patch is inadvisable.

    That all said see screenshot please.

    I recommend a delete of the quarantined files. A full shutdown. An offline scan with Defender. Depending on results a second offline scan with some other provider - such as ESET.

    What you do from there depends on the results above.
    Attached Thumbnails Attached Thumbnails where is the quarantined defender files put?-untitled.png  
      My Computer


  3. Posts : 1,257
    win10 PRO on 5 PC's and Linux mint
    Thread Starter
       #3

    Macboatmaster said:
    That patch - if it is the patch that suggests it will unlock the realtek device to enable Dolby 5.1 etc then I just fail to understand IF YOU KNOW THE RISK why you would even think of using such a so called patch.

    IF you do NOT know the risk, then please be informed that any such so called patch is to be treated as dangerous, possibly in some cases, not only placing adware/spyware on your computer, but malware to track your activity and steal passwords .

    See this
    Are there any guides for modifying/unlocking Realtek drivers yourself, instead of trusting randomly downloaded drivers? | TechPowerUp Forums
    and from there


    I do not know if the patch you downloaded did indeed have the detected
    hack tool: Win32/Keygen

    Name Hacktool:Win32/Keygen threat
    Threat Type Trojan, Password stealing virus, Banking malware, Spyware

    Trojans are designed to stealthily infiltrate victim's computer and remain silent thus no particular symptoms are clearly visible on an infected machine.

    Distribution methods Infected email attachments, malicious online advertisements, social engineering, software cracks.

    Damage Stolen banking information, passwords, identity theft etc.

    OR whether it is simply a false positive caused by the heuristic detection on Defender.
    What I DO KNOW is that your intention to restore is IMHO most inadvisable.

    Even if you could to run such patch is inadvisable.

    That all said see screenshot please.

    I recommend a delete of the quarantined files. A full shutdown. An offline scan with Defender. Depending on results a second offline scan with some other provider - such as ESET.

    What you do from there depends on the results above.
    Well, I put that patch on my media center PC years ago, and it has been flawless.
    Gave the realtek chip dolby surround output.
    We use that PC 365 days per year, I have 8tb recording storage on it, and it runs win10 1909 WMC for windows 10, and has always passed Malware Bytes, Defender scans.
    It is our PC for watching OTA HDTV TV
    But I did move beyond Realtek Dolby motherboard spdif output when I figured out the Dolby surround through the HDMI cable direct to a switch box that extracts the dolby surround and sends it to my dolby receiver. I just wanted a copy of the file just in case something needed reinstalling someday
    And I use a Firestick 4k, so no longer using realtek dolby, but got me when Defender deleted my patch file, so I had to find it again. Either the Motherboard maker or Realtek did not pay the Dolby license fee, so the dolby output is not found in the standard realtek driver anymore, but it used to be there in earlier windows versions as after I went from windows 7 to windows 10, the PC lost dolby surround output from the motherboard spdif coaxial port.

    That is why it is flagged as super deadly because they cracked down on getting 'free' dolby sound from realtek chips.

    Years ago, was the same story about the 'hack' and I looked into it on many realtek and other PC sound forums and they said it is a false positive.

    - - - Updated - - -

    " In fact, Malwarebytes detects all known Trojans and more, since 80% of Trojan detection is done by heuristic analysis."

    https://www.malwarebytes.com/trojan/...20the%20Trojan.

    Malware Bytes scans never found any trojans on the PC
    But I do appreciate your response, thanks
      My Computer


  4. Posts : 1,612
    11, 10, 8.1 and 7 all Professional versions, and Linux Mint
       #4

    Cheers
    Firstly may I point out that I had no way of knowing all of this
    Well, I put that patch on my media center PC years ago, and it has been flawless.
    Gave the realtek chip dolby surround output.
    We use that PC 365 days per year, I have 8tb recording storage on it, and it runs win10 1909 WMC for windows 10, and has always passed Malware Bytes, Defender scans.
    Secondly
    Did you find the file as per my suggestion - screenshot - IF you need it
      My Computer


  5. Posts : 1,257
    win10 PRO on 5 PC's and Linux mint
    Thread Starter
       #5

    Macboatmaster said:
    Cheers
    Firstly may I point out that I had no way of knowing all of this


    Secondly
    Did you find the file as per my suggestion - screenshot - IF you need it
    Hi yes, appreciate a screen shot, thanks
      My Computer


  6. Posts : 745
    Windows 10/11
       #6

    First, clear you Defender history with this:
    ClearDefenderHistory | Clear Windows Defender History Files
      My Computer


 

  Related Discussions
Our Sites
Site Links
About Us
Windows 10 Forums is an independent web site and has not been authorized, sponsored, or otherwise approved by Microsoft Corporation. "Windows 10" and related materials are trademarks of Microsoft Corp.

© Designer Media Ltd
All times are GMT -5. The time now is 01:33.
Find Us




Windows 10 Forums