Configure detection for potentially unwanted applications

Information

Enable or disable detection for potentially unwanted applications. You can choose to block, audit, or allow when potentially unwanted software is being downloaded or attempts to install itself on your computer.
Enabled:
Specify the mode in the Options section:
-Block: Potentially unwanted software will be blocked.
-Audit Mode: Potentially unwanted software will not be blocked, however if this feature would have blocked access if it were set to Block, then a record of the event will be in the event logs.
Disabled:
Potentially unwanted software will not be blocked.
Not configured:
Same as Disabled.

Solution

Policy Path: Windows Components\Windows Defender Antivirus
Policy Setting Name: Configure detection for potentially unwanted applications

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/security-baseline-final-for-windows-10-v1809-and-windows-server/ba-p/701082/

Item Details

Category: CONFIGURATION MANAGEMENT

References: 800-53|CM-7(4)

Plugin: Windows

Control ID: 8de9671a68a1de1a4cd1b968f80d8bbbe879dcf81cc7f1e97a8261f77de1f622