| MSFT Windows 11 22H2 - Defender Antivirus | |
| Data collected on: 9/19/2022 8:29:01 AM | |
| Domain | security.local |
| Owner | SECURITY\Domain Admins |
| Created | 12/12/2019 5:55:52 AM |
| Modified | 8/22/2022 10:02:30 AM |
| User Revisions | 1 (AD), 1 (SYSVOL) |
| Computer Revisions | 13 (AD), 13 (SYSVOL) |
| Unique ID | {048EDF92-475E-4360-A38B-025342E2D833} |
| GPO Status | User settings disabled |
| Location | Enforced | Link Status | Path |
|---|---|---|---|
| MSFT Clients | No | Enabled | security.local/MSFT Clients |
| SCT Windows 11 Client | No | Enabled | security.local/SCT Windows 11 Client |
| Name |
|---|
| NT AUTHORITY\Authenticated Users |
| Name | Allowed Permissions | Inherited |
|---|---|---|
| NT AUTHORITY\Authenticated Users | Read (from Security Filtering) | No |
| NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS | Read | No |
| NT AUTHORITY\SYSTEM | Edit settings, delete, modify security | No |
| SECURITY\Domain Admins | Edit settings, delete, modify security | No |
| SECURITY\Enterprise Admins | Edit settings, delete, modify security | No |
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Configure detection for potentially unwanted applications | Enabled | |||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Configure the 'Block at First Sight' feature | Enabled | |||
| Join Microsoft MAPS | Enabled | |||
| ||||
| Policy | Setting | Comment | ||
| Send file samples when further analysis is required | Enabled | |||
| ||||
| Policy | Setting | Comment | ||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Configure Attack Surface Reduction rules | Enabled | |||||||||||||||||||||||||||||||||
| ||||||||||||||||||||||||||||||||||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Prevent users and apps from accessing dangerous websites | Enabled | |||
| Policy | Setting | Comment | ||
|---|---|---|---|---|
| Select cloud protection level | Enabled | |||
| ||||
| Policy | Setting | Comment |
|---|---|---|
| Scan all downloaded files and attachments | Enabled | |
| Turn off real-time protection | Disabled | |
| Turn on behavior monitoring | Enabled | |
| Turn on script scanning | Enabled |
| Policy | Setting | Comment |
|---|---|---|
| Scan removable drives | Enabled |