Windows 10: Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed...

Discus and support Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed... in AntiVirus, Firewalls and System Security to solve the problem; A very important excel do with vba and macros is being flagged by windows defender as a virus. We submitted to microsoft - they scanned the document... Discussion in 'AntiVirus, Firewalls and System Security' started by RyanChris, Apr 6, 2020.

  1. RyanChris Win User

    Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed...


    A very important excel do with vba and macros is being flagged by windows defender as a virus. We submitted to microsoft - they scanned the document and said they removed the detection. We have run all updates on our windows 10 computers but we still cannot use the file. Our company cannot run without this document - it has been working for several months until there was an Office 365 update on March 17, 2020. Have had no luck contacting MS to get help and our Office 365 "partner" that MS is telling us to contact is unwilling to send out tech's or help us at this time due to COVID.


    Please help!

    :)
     
    RyanChris, Apr 6, 2020
    #1

  2. Software, NOT a virus, being flagged and removed by Defender

    An old game that worked fine yesterday is suddenly being flagged and removed by Defender.

    What do I do if Defender has a problem with software I know is legit?

    Will Microsoft take reports on this and make changes to Defender?

    The only way it could be Malware is if there's a tricky virus that can insert itself into this software, even as I download it fresh from the website. Is that even possible?

    The game in question is a Kingdom for Keflings:

    A Kingdom for Keflings!

    ***Post moved by the moderator to the appropriate forum category.***
     
    BradyDalton, Apr 6, 2020
    #2
  3. Use Windows Defender Application Control (WDAC) with the Microsoft Intelligent Security Graph

    Hi,



    Thank you for writing to Microsoft Community Forums.



    In order to enable trust for executables based on classifications in the ISG, the
    Enabled:Intelligent Security Graph authorization option must be specified in the WDAC policy. This can be done with the Set-RuleOption cmdlet. In addition, it is recommended from a security perspective to also enable the
    Enabled:Invalidate EAs on Reboot option to invalidate the cached ISG results on reboot to force rechecking of applications against the ISG.



    Since the ISG relies on identifying executables as being known good, there are cases where it may classify legitimate executables as unknown, leading to blocks that need to be resolved either with a rule in the WDAC policy, a catalog signed by a certificate
    trusted in the WDAC policy or by deployment through a WDAC managed installer. Typically, this is due to an installer or application using a dynamic file as part of execution. These files do not tend to
    build up known good reputation. Auto-updating applications have also been observed using this mechanism and may be flagged by the ISG.



    Modern apps are not supported with the ISG heuristic and will need to be separately authorized in your WDAC policy. As modern apps are signed by the Microsoft Store and Microsoft Store for Business. It is straightforward to authorize modern apps with
    signer rules in the WDAC policy.



    Enabled:Intelligent Security Graph Authorization -> Use this option to automatically allow applications with "known good" reputation as defined by Microsoft’s Intelligent Security Graph (ISG).



    Enabled:Invalidate EAs on Reboot -> When the Intelligent Security Graph option (14) is used, WDAC sets an extended file attribute that indicates that the file was authorized to run. This option will cause WDAC to periodically
    re-validate the reputation for files that were authorized by the ISG.



    For more information, you may refer the below articles.





    If you still have questions, then I suggest you to post your query in
    IT Pro TechNet Forums
    , where we have support
    professionals who are well equipped with the knowledge on Windows Defender Application Control (WDAC) with the Microsoft Intelligent Security Graph.



    Please feel free to contact us back, in case you have any other questions/issues with Windows in future.
     
    Shafeeq_Khan, Apr 6, 2020
    #3
  4. Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed...

    Windows Defender Not On

    Hi,



    Welcome to Microsoft Community. Your interest in Windows 10 is much appreciated.



    I would suggest you to try the below methods and check:

    Method 1:

    I would suggest you to run virus scan to make sure the computer is free from virus.

    The Microsoft Safety Scanner is a free downloadable security tool that provides on-demand scanning and helps remove virus, spyware, and other malicious software. It works with your existing antivirus software.

    Microsoft Safety Scanner Download - Windows security



    Method 2:

    Turn the Defender on. Follow the below steps:

    • In search, type Defender.
    • Now make the option ON by moving the slider accordingly.


    Method 3: Run the SFC.

    Follow the below steps:

    • Open Command Prompt.
    • Select “Run as Administrator”.
    • Type “sfc /scannow” without quotes and hit
      Enter.
    Now check for the issue.



    Keep us posted if you face any issues on windows in future. We will be glad to help you.
     
    Annu Singh, Apr 6, 2020
    #4
Thema:

Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed...

Loading...
  1. Windows defender flagging excel doc as a virus. Microsoft Security Intelligence has removed... - Similar Threads - defender flagging excel

  2. Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...

    in Windows 10 Gaming
    Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...: Daily Occurence and the extract below, as an example is taken from Windows reliability report DescriptionInstallation Failure: Windows failed to install the following update with error 0x80240017: Security Intelligence Update for Microsoft Defender Antivirus - KB2267602...
  3. Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...

    in Windows 10 Installation and Upgrade
    Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...: Daily Occurence and the extract below, as an example is taken from Windows reliability report DescriptionInstallation Failure: Windows failed to install the following update with error 0x80240017: Security Intelligence Update for Microsoft Defender Antivirus - KB2267602...
  4. Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...

    in Windows 10 Software and Apps
    Would Microsoft Defender Anti Virus Security Intelligence Updates repeatedly fail, and on a...: Daily Occurence and the extract below, as an example is taken from Windows reliability report DescriptionInstallation Failure: Windows failed to install the following update with error 0x80240017: Security Intelligence Update for Microsoft Defender Antivirus - KB2267602...
  5. Security Intelligence Updates for Microsoft Defender Antivirus

    in AntiVirus, Firewalls and System Security
    Security Intelligence Updates for Microsoft Defender Antivirus: Is it possible to stop receiving these updates? If so, how?OS: Windows 11 Pro v 22H2 Build 22621.382AV: Malwarebytes Premium v 4.5.13.208 https://answers.microsoft.com/en-us/protect/forum/all/security-intelligence-updates-for-microsoft/58662316-c0ac-4d55-8967-300a2cd66ca2
  6. Are Microsoft Defender monthly Security Intelligence updates cumulative?

    in AntiVirus, Firewalls and System Security
    Are Microsoft Defender monthly Security Intelligence updates cumulative?: hi,I'm managing a range of totally isolated Win10 Enterprise servers used in Industrial Control. I'm setting up manual patching, but I need to understand if to get fully up to date I need to run in every monthly patch since last many months or I can just use the latest...
  7. Security Intelligence Update for Microsoft Defender Antivirus

    in Windows 10 Installation and Upgrade
    Security Intelligence Update for Microsoft Defender Antivirus: Security Intelligence Update for Microsoft Defender Antivirus - KB2267602 was the last defender update that installed. There is usually a daily update and there still is on my other laptop with WIndows 10 OS. Is there a known fix for this? Thank you....
  8. Security Intelligence Update for Microsoft Defender Antivirus

    in AntiVirus, Firewalls and System Security
    Security Intelligence Update for Microsoft Defender Antivirus: I have 6 'important updates' that I have tried to install for about 4 weeks however I am having trouble. The updates will begin to install and then when they hit 100% they will reinstall, this happens twice and then my computer will restart. Has anybody had this issue...
  9. Security essentials flagging my excel doc as being a virus

    in AntiVirus, Firewalls and System Security
    Security essentials flagging my excel doc as being a virus: After a recent 365 update 3/17, I have an Excel doc with VBA and Macros that Security Essentials is flagging as a virus. It deleted and/or disabled all of the macros and vba code and will not allow me to upload the backup file from a thumb drive. The excel doc has been...
  10. About Security Intelligence Updates for Microsoft Defender

    in Windows 10 News
    About Security Intelligence Updates for Microsoft Defender: If you administrate systems protected by Windows Defender, the default antivirus solution that is included in Windows, you may have noticed that Windows Update downloaded a definitions update called Security Intelligence Update for Windows Defender Antivirus. Windows Update...