New
#1
Defender settings
hi all,
here's an odd question.
i run another 3rd party anti-malware software on my win 10. 10 will then disable Defender. however, i want to run both, but in this fashion, which is how it is now. i manually turn on Defender via registry settings but disable the realtime feature, i then create a daily task in scheduler to run MpCmdRun.exe to get sig updates, then a weekly task to run MpCmdRun.exe to do a scan type 2.
seems to work fine, but what i have seen thus far is on a very clean/new system.
so my 3rd party anti malware is realtime and does daily full scan of system so i expect it to catch something before Defender runs, but what exactly happens in this scenario:
lets say i get a file that in Defender sigs is bad but 3rd party not yet have a sig for it, so the file sits on my system from now until Defender runs, but, lets say on fri 3rd party gets the sig but 3rd party next full scan will not run until after the Defender scan on sat. when Defender reads the bad file the 3rd party software will also catch it because the file is being read by the 3rd party as Defender reads it.
so what exactly happens? does 3rd party nab the file while at same time Defender flags it but cannot quarantine it?
the idea for running both is to have two types of anti malware running, but i am trying to understand this odd scenario than can occur.
your thoughts?