Windows 10: Need some help to understand Windows Defender telemetry.

Discus and support Need some help to understand Windows Defender telemetry. in AntiVirus, Firewalls and System Security to solve the problem; This topic it may have been discussed somewhere in tenforums, if so please redirect me. I decided to use Windows Defender (WD) and SmartScreen (SS)... Discussion in 'AntiVirus, Firewalls and System Security' started by Pulcinella, Sep 5, 2017.

  1. Need some help to understand Windows Defender telemetry.


    This topic it may have been discussed somewhere in tenforums, if so please redirect me.

    I decided to use Windows Defender (WD) and SmartScreen (SS) as AV. I would like to tweak its settings to avoid telemetry as far as it does not reduce the effectiveness of its protections.
    Do I need to send cloud telemetry?
    I understand that Disabling SS will lower the protection but I read that SS send a lot of things and it is of a privacy concern for many.
    Does SS have access to the browsing history and surfing habit of the user? Does it send details of apps, files, TV series and the like the user watch or download?
    With the upcoming W10 fall upgrade WD will be greatly enhanced with a number of new features. I suspect more telemetry too.

    I'll much appreciate any thought, suggestion and insight how to find a balance between security and privacy.

    :)
     
    Pulcinella, Sep 5, 2017
    #1
  2. Jogibaer1 Win User

    Why scans Defender every program when I start it?

    Yes, I understand the Defender issure regarding the Scan of every program. Thank you for your reply.

    As I said in the first post: I've scanned my PC with the newest release/database of Kaspersky Antivirus portable from USB stick via Linux + Malwarebytes scan, deep scan, nothing found. My system is clean.

    1. No I'm using Windows Defender only.

    2. No it happens only for third party programs, like Thunderbird or KeePass portable for example.

    3. I think it started 4 or 5 weeks ago, after some Windows updates.

    4. No Defender didn't detect any malware or viruses.

    I'm not using the registry cleaning function of CCleaner, only for cleaning of temp files and cookies. I got the experience that cleaning the registry doesn't really help but rather makes the OS even worse. Unless there are some obtrusive uninstall rests
    of programs which embed themselves deeply into the system.

    Realtime protection is completely off, of Malwarebytes, same applies to CCleaner. Neither their processes are running.

    Realtime protection of Defender is on, of course.

    I also watched that the Telemetry and Data Collection as a source for high CPU usage. I used the tool
    O&O ShutUp to kill it completely. And since then, my system runs pretty fast. I'll observe it for more days to make sure, but for now it has accelerated my PC significantly.

    That was the only thing I've set off with the O&O ShutUp tool, because I like the concept of Windows 10 and don't want to destroy the user experience. But unfortunately Microsoft needs to improve the efficiency of Telemetry and Antivirus services and/or
    processes. I will give feedback when I'm sure it has helped.
     
    Jogibaer1, Sep 5, 2017
    #2
  3. 100 Disk Usage after Startup

    This is the Microsoft Telemetry process which is utilize the whole I/O capacity of a computer independent of your model. It happens on all my Windows 10 machines and together with the Windows Defender process this can render your computer to 100% useless
    for sometimes more than 10 minutes. It's a well known behavior since introducing Microsoft Telemetry.
     
    Frank Loizzi, Sep 5, 2017
    #3
  4. Need some help to understand Windows Defender telemetry.

    Only MS can tell you that and they will not, but this says something:

    Manage Privacy: SmartScreen Filter and Resulting Internet Communication


    No. I disable all cloud features, I prefer AVs with heuristics. The tradeoff is, that the computer is mostly unprotected against new threats, but that is usually fixed within 24-48 hours by signatures updates.


    As for cloud protection, you can customize those settings.

    Code: Block at First Sight / 0 - Enable / 1 - Disable reg add "HKLM\Software\Policies\Microsoft\Windows Defender\SpyNet" /v "DisableBlockAtFirstSeen" /t REG_DWORD /d "0" /f Cloud-based Protection / 0 - Disable / 1 - Basic / 2 - Advanced reg add "HKLM\Software\Policies\Microsoft\Windows Defender\SpyNet" /v "SpynetReporting" /t REG_DWORD /d "1" /f Send file samples when further analysis is required / 0 - Always prompt / 1 - Send safe samples automatically / 2 - Never send / 3 - Send all samples automatically reg add "HKLM\Software\Policies\Microsoft\Windows Defender\SpyNet" /v "SubmitSamplesConsent" /t REG_DWORD /d "1" /f[/quote] Configuring SpyNet reporting

    Enable Block at First Sight to detect malware in seconds | Microsoft Docs

    Enable cloud-delivered protection in Windows Defender Antivirus | Microsoft Docs
     
    TairikuOkami, Sep 5, 2017
    #4
  5. Thanks for the information. Really appreciate your time and effort.

    In regard the below statement:


    Privacy: URLs that are collected may unintentionally contain personal information (depending on the design of the website that is visited). Like the other information that is sent to Microsoft, this information is not used to identify, contact, or target advertising to users. In addition, Microsoft filters address strings to remove personal information where possible.

    Does SS collect the same even if I don't use Edge or IE?
     
    Pulcinella, Sep 5, 2017
    #5
  6. @TairikuOkami

    Would you recommend disabling this settings?
    Need some help to understand Windows Defender telemetry. [​IMG]
     
    Pulcinella, Sep 5, 2017
    #6
  7. I would not say recommend, but if you are concerned about privacy, then you should keep it disabled.

    No, but if it detects an unknown file, it might upload it online for the analysis.
     
    TairikuOkami, Sep 5, 2017
    #7
  8. Need some help to understand Windows Defender telemetry.

    So in a way SS monitor other browsers activity too. Or you mean that once a file is downloaded SS may access the computer folders and upload a newly downloaded file. Or that SS or WD have access to files and folders to monitor for old or new files?

    BTW I use O&O ShutUp to disable Spynet and others unwanted Telemetry.
     
    Pulcinella, Sep 5, 2017
    #8
  9. TairikuOkami, Sep 5, 2017
    #9
  10. Pulcinella, Apr 5, 2018
    #10
Thema:

Need some help to understand Windows Defender telemetry.

Loading...
  1. Need some help to understand Windows Defender telemetry. - Similar Threads - Need help understand

  2. Need some help...

    in Windows 10 Ask Insider
    Need some help...: So I tried resetting a laptop that used to be my brother's. After it was all done it brought me to the login screen with the same User Account. I tried using the password associated with it and it gave me an error saying "the user profile service failed the sign-in." I found...
  3. Telemetry client error - need help!

    in Windows 10 BSOD Crashes and Debugging
    Telemetry client error - need help!: For the past two weeks, I've been getting this pop-up message, and it's maddening:I would really appreciate any possible solutions to getting rid of this. I tried turning off the telemetry client in settings, but it did nothing....
  4. Need help understanding system backup

    in Windows 10 Ask Insider
    Need help understanding system backup: I really have no knowledge of this but I want to make sure I get it right. This is what I understand so far. Please correct me 1. Installing the macrium reflect in the laptop 2. Run the programme to make a clone. What is the image making option though? 3. Backup and save 4....
  5. Need some helpful help

    in Windows 10 Ask Insider
    Need some helpful help: So I was trying to download an editing software, on my Window 10, but I couldn't install it because I was missing opencl.dll, but I found the opencl.dll in File Explorer, so i dragged it in the System32 file. But now i faced with a new problem. My new problem is "the...
  6. Need help to understand virtual whatever

    in Windows 10 Ask Insider
    Need help to understand virtual whatever: Don't know if I'm in some twilight zone or what.. But installing latest Windows 10 offline with USB and deleting everything+clean install on dell PC from 2011.. How is possible that I'm not able to open device manager??? Can't connect to virtual network .. ????? Anything...
  7. Need help understanding digital license

    in Windows 10 Ask Insider
    Need help understanding digital license: A few years ago I got a laptop with Windows 10 Pro then a few months ago I got an old PC from a friend. On said PC I signed into my Microsoft account. In the Activation section of Update & Security, both computers say that Windows 10 Pro is installed with the message:...
  8. Need Help Understanding Backups with Macrium

    in Windows 10 Backup and Restore
    Need Help Understanding Backups with Macrium: I've spent countless hours trying to research this so I can understand it and I'm still having issues. If I use software such as Macrium, I can clone my C drive to an SSD so that if my C drive were to fail, I could pop in the SSD and that's it. It's basically like nothing...
  9. Need help understanding a crash report

    in Windows 10 BSOD Crashes and Debugging
    Need help understanding a crash report: I've never used these online forums before and I'm not sure how to go about asking for help but my windows has been crashing a lot lately and I have updated all my drivers, factory reset the system, and I think i may have a faulty cpu or motherboard. To my knowledge I have...
  10. Need help understanding Disk Management

    in Windows 10 Drivers and Hardware
    Need help understanding Disk Management: [img] This is from my Dell Tablet. What are all the Disk 0 Partitions? They are all showing empty. Can I delete them to free up more disk space? 101214

Users found this page by searching for:

  1. windows defender smart screen telemetry