Windows 10: Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...

Discus and support Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... in Windows 10 Software and Apps to solve the problem; Microsoft defender detected the D:\ drive as a threat and will not allow me to perform another scan without taking action on this threat.I don't know... Discussion in 'Windows 10 Software and Apps' started by BRUKBRUK, Aug 9, 2024.

  1. BRUKBRUK Win User

    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...


    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform another scan without taking action on this threat.I don't know if there is a threat in the D:\ disk, the partition after C:\, but it seemed ridiculous that it detected an entire disk partition as a threat without specifying a file path.

    :)
     
    BRUKBRUK, Aug 9, 2024
    #1
  2. APZ
    apz Win User

    Threats detected by Windows Defender

    Hello @AdvancedSetup, When I click on View detailed results of the scan:
    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... 360592d1645611230t-threats-detected-windows-defender-view-details-scan-microsoft-safety-scanner.jpg
    I get this list of infections found:
    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... 360593d1645611306t-threats-detected-windows-defender-scan-results_1.jpg

    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... 360594d1645611320t-threats-detected-windows-defender-scan-results_2.jpg

    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... 360595d1645611330t-threats-detected-windows-defender-scan-results_3.jpg
    Finally, I attach the reports:
     
  3. Try3 Win User
    Windows defender false positive - forced to allow threat

    Windows defender has started to identify C:\Windows\System32\mshta.exe as a threat [normally reported as a Trojan Powessere.G]. I use mshta.exe to run an hta custom MsgBox - I have been hoping to keep using my current CustomMsgBox tool [batch file calling a vbs-hta file] until later this year when I hope to have had enough time to replace it with a PowerShell alternative.

    Windows defender's notification lets me "allow the threat" but that seems to me to be a bigger security hole than is necessary - it will now ignore a potentially real intrusion when all I want to run is a genuine Windows component. My immediate problem is fixed but I would prefer to fix the false positive using the exclusions list.

    I cleared the 'Allowed threats history' so I could use the exclusions list instead. I added C:\Windows\System32\mshta.exe to the file exclusions list and I checked that it had taken properly by checking the exclusions list both in the UI & in the Registry. But the exclusion made no difference, it continued to detect and block the exe.

    I have repeated the attempt several times [by clearing the allowed threats list & exclusions list beforehand] and the results are the same every time
    - allowing the threat works,
    - using the exclusions list has no effect.

    I studied the relevant tutorial but have not spotted an error in what I have been doing - Add or Remove Windows Defender Exclusions

    Does anybody with experience of using the exclusions list to counter false positives have any suggestions for me?

    Denis
     
    Try3, Aug 9, 2024
    #3
  4. zebal Win User

    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...

    Windows Defender/Security - no option to "Allow" potential threats?

    If you want to control what does defender do to threats you can do it trough GPO in the following location: Computer configuration\Administrative templates\Windows components\Microsoft defender antivirus\Threats Here configure option: Specify threats upon which default action should not be taken when detected Threats are categorized by level, you assign default action per threat level.
    EDIT: Btw. to open GPO (Local Group Policy) follow these steps: 1. click on start button 2. type: gpedit.msc 3. right click on gpedit.msc and run as Administrator
     
    zebal, Aug 9, 2024
    #4
Thema:

Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...

Loading...
  1. Microsoft defender detected the D:\ drive as a threat and will not allow me to perform... - Similar Threads - Microsoft defender detected

  2. D drive not detected

    in Windows 10 Drivers and Hardware
    D drive not detected: Hi I can see my d drive in this pc and disc management, but it crashes the games when trying to play on it saying games can't be found. I've attached some images for further explanation. Can you help?Basically when im trying to save stuff on it, it says drive can't be found...
  3. Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...

    in Windows 10 Gaming
    Microsoft defender detected the D:\ drive as a threat and will not allow me to perform...: Microsoft defender detected the D:\ drive as a threat and will not allow me to perform another scan without taking action on this threat.I don't know if there is a threat in the D:\ disk, the partition after C:\, but it seemed ridiculous that it detected an entire disk...
  4. Defender Keeps Reporting Allowed Threats

    in Windows 10 Gaming
    Defender Keeps Reporting Allowed Threats: I've looked for answers to this but am not finding them. Windows Defender recently started detecting a utility we use at work written by one of my coworkers in AutoIT as malware. While we've made allowance for it through MDE, Defender on my home computer is also reporting it...
  5. Defender Keeps Reporting Allowed Threats

    in AntiVirus, Firewalls and System Security
    Defender Keeps Reporting Allowed Threats: I've looked for answers to this but am not finding them. Windows Defender recently started detecting a utility we use at work written by one of my coworkers in AutoIT as malware. While we've made allowance for it through MDE, Defender on my home computer is also reporting it...
  6. Defender Keeps Reporting Allowed Threats

    in Windows 10 Software and Apps
    Defender Keeps Reporting Allowed Threats: I've looked for answers to this but am not finding them. Windows Defender recently started detecting a utility we use at work written by one of my coworkers in AutoIT as malware. While we've made allowance for it through MDE, Defender on my home computer is also reporting it...
  7. Windows Defender and Trojan in "Allowed threat"

    in AntiVirus, Firewalls and System Security
    Windows Defender and Trojan in "Allowed threat": Hi guys, I have problem, I have Trojan and behavior in allowed threats. When I click remove and again open allowed threats, vrius still is in there. What I should to do ? Is it Windows defender bug or I still have a virus ? Btw I used malwarebytes and windows defender...
  8. Threat Detection: Removed or Restored and Allow

    in AntiVirus, Firewalls and System Security
    Threat Detection: Removed or Restored and Allow: Hello, i plugged in my usb to the pc and windowds definder detected virus so i removed it immeditly after ejecting it so roughly 3 min. then it says the virus is quarantined so i cliked on action and choose: remove but the status became: remove or restored “ i...
  9. Threat Detection Removed or Restored and Allow

    in AntiVirus, Firewalls and System Security
    Threat Detection Removed or Restored and Allow: My windows virus and threat protection software picked up on this: HackTool:BAT/AutoKMS Then from actions ı select remove it.Now it shows removed.But ı can still see it on windows defender past and its status is removed. Does it mean ı am safe now and the file that makes...
  10. Windows Defender and Allowed Threats

    in AntiVirus, Firewalls and System Security
    Windows Defender and Allowed Threats: So the issue that I am having is that I have some stuff running on my my PC that technically is a virus but it has a specific purpose and I want it to run. I repeatedly have to restore the files and allow them. It happens at least 2-3 times a week....