Windows 10: Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see...

Discus and support Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see... in AntiVirus, Firewalls and System Security to solve the problem; For the past week when i used the defender scan i kept getting the notification that windows defender has detected 1 threat and has taken action... Discussion in 'AntiVirus, Firewalls and System Security' started by aqr123dg, May 17, 2021.

  1. aqr123dg Win User

    Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see...


    For the past week when i used the defender scan i kept getting the notification that windows defender has detected 1 threat and has taken action against it, The thing is that whenever i scan again it is still there. i tried the offline scan to root it out and it would work but after a while the 1 threat reappears. i checked the logs in the windows defender and saw some examples of the event id 5007 which says that Microsoft Defender antivirus configuration has been changed. if this is an unexpected event you should review the settings as this may be the result of malware. here are a few exampl

    :)
     
    aqr123dg, May 17, 2021
    #1

  2. 'windows defender successfully took action on 1 threat'

    I get a notification that 'windows defender successfully took action on 1 threat' but I am not able to see what the problem or threat was that it took action on. Advice?
     
    TragicallyMisunderstood, May 17, 2021
    #2
  3. Threat detection Options confusion

    Hello,

    I had a virus on my PC and windows defender quarantined it.

    But I clicked on the “Action” button and has three options: Removes , Restore , and Allow

    I clicked on Remove, but the threat status changed to: “threat removed or restored “

    Which is confusing.

    I then clicked again on the “Action” button and only 1 option appeared which is “ Allowed” I mistakenly Clicked on. But then I removed it from the “ allow history “

    So my question:

    • does allowing a “ removed or restored” threat means releasing it again in the PC or it means only allowing the future similar threat?
    Because I run a scan after i removed it from allow history and nothing is detected.

    I’m very confused. I would appreciate help.

    My threat was : worm win32/bundpil. “Two letter “
     
    Naheel sami, May 17, 2021
    #3
  4. Try3 Win User

    Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see...

    Windows defender false positive - forced to allow threat

    Windows defender has started to identify C:\Windows\System32\mshta.exe as a threat [normally reported as a Trojan Powessere.G]. I use mshta.exe to run an hta custom MsgBox - I have been hoping to keep using my current CustomMsgBox tool [batch file calling a vbs-hta file] until later this year when I hope to have had enough time to replace it with a PowerShell alternative.

    Windows defender's notification lets me "allow the threat" but that seems to me to be a bigger security hole than is necessary - it will now ignore a potentially real intrusion when all I want to run is a genuine Windows component. My immediate problem is fixed but I would prefer to fix the false positive using the exclusions list.

    I cleared the 'Allowed threats history' so I could use the exclusions list instead. I added C:\Windows\System32\mshta.exe to the file exclusions list and I checked that it had taken properly by checking the exclusions list both in the UI & in the Registry. But the exclusion made no difference, it continued to detect and block the exe.

    I have repeated the attempt several times [by clearing the allowed threats list & exclusions list beforehand] and the results are the same every time
    - allowing the threat works,
    - using the exclusions list has no effect.

    I studied the relevant tutorial but have not spotted an error in what I have been doing - Add or Remove Windows Defender Exclusions

    Does anybody with experience of using the exclusions list to counter false positives have any suggestions for me?

    Denis
     
Thema:

Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see...

Loading...
  1. Windows Defender has detected 1 threat and has taken action agaisnt it but i do not see... - Similar Threads - Defender has detected

  2. Windows 10 Defender is showing two threats that avoids abny action taken. They are...

    in Windows 10 Gaming
    Windows 10 Defender is showing two threats that avoids abny action taken. They are...: Windows 10 Defender is showing two threats that avoids abny action taken. They are PUA:Win32/PassShow AND PUA:Win32/Presenoker. Why is this happenning?...
  3. Windows 10 Defender is showing two threats that avoids abny action taken. They are...

    in Windows 10 Software and Apps
    Windows 10 Defender is showing two threats that avoids abny action taken. They are...: Windows 10 Defender is showing two threats that avoids abny action taken. They are PUA:Win32/PassShow AND PUA:Win32/Presenoker. Why is this happenning?...
  4. Windows 10 Defender is showing two threats that avoids abny action taken. They are...

    in AntiVirus, Firewalls and System Security
    Windows 10 Defender is showing two threats that avoids abny action taken. They are...: Windows 10 Defender is showing two threats that avoids abny action taken. They are PUA:Win32/PassShow AND PUA:Win32/Presenoker. Why is this happenning?...
  5. Windows Security NOT remembering actions taken / allowed threats

    in AntiVirus, Firewalls and System Security
    Windows Security NOT remembering actions taken / allowed threats: Edition Windows 10 ProVersion 21H2Installed on ‎20-‎Apr-‎22OS build 19044.2604Experience Windows Feature Experience Pack 120.2212.4190.0windows security tells me every day, that it found a file, with a threat.i allow the threat every day.same file, same threat, every day....
  6. Windows Security NOT remembering actions taken / allowed threats

    in Windows 10 Gaming
    Windows Security NOT remembering actions taken / allowed threats: Edition Windows 10 ProVersion 21H2Installed on ‎20-‎Apr-‎22OS build 19044.2604Experience Windows Feature Experience Pack 120.2212.4190.0windows security tells me every day, that it found a file, with a threat.i allow the threat every day.same file, same threat, every day....
  7. KEEP GETTING NOTIFICATION THAT DEFENDER HAS DETECTED VIRUS THREATS

    in AntiVirus, Firewalls and System Security
    KEEP GETTING NOTIFICATION THAT DEFENDER HAS DETECTED VIRUS THREATS: I am receiving notifications that Windows Defender has detected virus threats. But when I click on the notification that takes me to Windows Security, it shows that I am up to date on everything and that no threats have been detected. This is becoming quite annoying. Is there...
  8. Windows defender threat service has stopped

    in Windows 10 BSOD Crashes and Debugging
    Windows defender threat service has stopped: https://prnt.sc/u8hf75 I've tried multiple fixes such as looking in registry editor and doing the Dism and sfc /scannow stuff in cmd but neither of those worked what should i do?...
  9. Avast has taken over my defender

    in AntiVirus, Firewalls and System Security
    Avast has taken over my defender: 'Your PC isn't being monitored because the app's service stopped. You should restart it now'. This is what I get any time I open my windows defender ever since Avast Antivirus was installed on my laptop. The Avast Antivirus seems to be the default Antivirus for my laptop...
  10. Action Center displays messages after the action has taken place

    in Windows 10 Support
    Action Center displays messages after the action has taken place: Action Center on my Win 10 64-bit PC sometimes works correctly and posts messages when an event occurs, e.g. an email being delivered or a USB stick being removed from a port. At other times though, the messages may not be displayed until 10 - 60 minutes after the event....

Users found this page by searching for:

  1. lots of 5007 logs defender