Windows 10: How AI and Windows Defender AV stopped an Emotet outbreak

Discus and support How AI and Windows Defender AV stopped an Emotet outbreak in Windows 10 News to solve the problem; At 12:46 a.m. local time on February 3, a Windows 7 Pro customer in North Carolina became the first would-be victim of a new malware attack campaign... Discussion in 'Windows 10 News' started by Brink, Feb 13, 2018.

  1. Brink
    Brink New Member

    How AI and Windows Defender AV stopped an Emotet outbreak


    Source: How artificial intelligence stopped an Emotet outbreak Microsoft Secure
     
    Brink, Feb 13, 2018
    #1
  2. Steve C Win User

    Presumably for this to work you need to turn on Cloud Delivered Protection and Automatic Sample Submission?

    :)
     
    Steve C, Feb 14, 2018
    #2
  3. Windows Defender in Windows 10?

    I have great respect for Mr.Kaspersky personally, and for his AV products – and while I’ve been a contributor in this forum for many years, I’ve always done my best to remain unbiased in my evaluations of Windows Defender. That’s because being “fair
    and balanced” got drilled into my psyche as part of my education and experience in research design and analytical methods.

    So I’ve been continuously monitoring the results of the AV-Comparatives Real-World Protection test in order to keep tabs on Defender’s level of protection; and also posting the results of this test here in the forum ever since the pace of Windows Defender’s
    development was accelerated in Version 1703. The AV-Comparatives Real-World Protection Test uses a state-of-the-art testing methodology – and in the most recent run, Windows Defender did finally reach the 100% detection mark:

    AV-Comparatives - Independent Tests of Anti-Virus Software - Real World Protection Test Overview

    But all of the the AV apps are tested with their default settings here, so it’s important to note that we can add significantly more protection to the mix by enabling Windows Defender’s new “next-gen” features:

    Windows Defender Detection rate

    The PUA Protection feature, in particular, is more proactive in nature than the others, and would be more likely to enhance Defender’s overall detection rate:

    Right-click on the Start button and launch Windows PowerShell (Admin).

    Then copy, paste, and enter this command line at the prompt:

    Set-MpPreference -PUAProtection 1

    But things are changing very rapidly these days in terms of both the threat landscape itself, and the development of new countermeasures within the AV apps. So the test results are highly variable over time, and only give us a momentary window
    into the relative status of the AV solutions.

    [Edit for update 3/29/2018]

    Community Moderator
    bhringer
    has just provided a link that shows us that it’s clearly “shock and awe” celebration time for the Windows Defender Team:

    Why Windows Defender Antivirus is the most deployed in the enterprise

    And these articles further illustrate how the Defender Team has achieved this success through the application of high technology:

    How artificial intelligence stopped an Emotet outbreak

    How artificial intelligence stopped an Emotet outbreak

    Detonating a bad rabbit: Windows Defender Antivirus and layered machine learning defenses

    Detonating a bad rabbit: Windows Defender Antivirus and layered machine learning defenses

    [end Edit]
     
    GreginMich, Feb 14, 2018
    #3
  4. How AI and Windows Defender AV stopped an Emotet outbreak

    Jsssssssss, Feb 14, 2018
    #4
  5. Bree New Member
  6. Cr00zng Win User
    Cr00zng, Apr 4, 2018
    #6
Thema:

How AI and Windows Defender AV stopped an Emotet outbreak

Loading...
  1. How AI and Windows Defender AV stopped an Emotet outbreak - Similar Threads - Defender stopped Emotet

  2. Total AV Disabled windows Defender

    in Windows 10 Gaming
    Total AV Disabled windows Defender: I have total AV installed on my computer, but it will not enable real time protection. Would it be windows defender is stopping it from working, and if I disable defender would it then work??thankscurly...
  3. Total AV Disabled windows Defender

    in AntiVirus, Firewalls and System Security
    Total AV Disabled windows Defender: I have total AV installed on my computer, but it will not enable real time protection. Would it be windows defender is stopping it from working, and if I disable defender would it then work??thankscurly...
  4. Total AV Disabled windows Defender

    in Windows 10 Software and Apps
    Total AV Disabled windows Defender: I have total AV installed on my computer, but it will not enable real time protection. Would it be windows defender is stopping it from working, and if I disable defender would it then work??thankscurly...
  5. Windows Defender AV not disabling

    in AntiVirus, Firewalls and System Security
    Windows Defender AV not disabling: I work for a MSP, and our client has Cylance. For some reason, Windows Defender AV will not disable. Endpoints in question: Windows 10 Pro, domain joined Domain functional level: Windows Server 2012 R2 My first attempt was to configure a domain GPO: Computer...
  6. Defender AV Scan

    in AntiVirus, Firewalls and System Security
    Defender AV Scan: I know we don't have access to what a quick scan does on a consistent basis, but is there a way of retroactively seeing what was included in said scan? Log files, .cab, etc.? And were would those be located/ what is the preferred way of reading those? Thank you!...
  7. Windows defender AV is gone..

    in AntiVirus, Firewalls and System Security
    Windows defender AV is gone..: Suddenly defender AV is gone - it doesn't appear in the security at glance menu. As if it is not installed. How can I get it back? https://answers.microsoft.com/en-us/protect/forum/all/windows-defender-av-is-gone/125fbdb3-a6c2-48d2-a9c2-c6ce012c35e3
  8. Extra Security that works with Windows Defender AV

    in AntiVirus, Firewalls and System Security
    Extra Security that works with Windows Defender AV: Hi, A free trial with McAfee has just expired. I don't want to use McAfee because it turns off Windows Defender. Can anyone suggest a good provider for extra protection that will still leave Defender in Active Mode? Thanks...
  9. Is Windows Defender an AV program, and is it enough?

    in AntiVirus, Firewalls and System Security
    Is Windows Defender an AV program, and is it enough?: When I google what Windows Defender is, it's sometimes referred to as an anti-spyware program, and other times it's called an anti-virus program. Is it both? And is it good enough to use it instead of also getting something like Avast as an anti-virus? I would hope that...
  10. Windows Defender AV & Threat Protection

    in AntiVirus, Firewalls and System Security
    Windows Defender AV & Threat Protection: windows security\virus & threat definitions\threat definitions\ Sample: 1) Threat Definition version: 1.285.1208.0 2) Version Created on: 2/9/2019 4:46 AM 2) Last Update: 2/9/2019 2:44 AM *Questions: 1) threat definition version: x.xxx.xxxx.x *2) Version created on:...

Users found this page by searching for:

  1. windows defender emotet randy treit