Turn off real-time protection

Information

This policy turns off real-time protection in Microsoft Defender Antivirus. Real-time protection consists of always-on scanning with file and process behavior monitoring and heuristics. When real-time protection is on Microsoft Defender Antivirus detects malware and potentially unwanted software that attempts to install itself or run on your device and prompts you to take action on malware detections. If you enable this policy setting real-time protection is turned off. If you either disable or do not configure this policy setting real-time protection is turned on.

Solution

Policy Path: Windows Components\Microsoft Defender Antivirus\Real-time Protection
Policy Setting Name: Turn off real-time protection

See Also

https://techcommunity.microsoft.com/t5/microsoft-security-baselines/windows-11-version-23h2-security-baseline/ba-p/3967618

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3c.1.

Plugin: Windows

Control ID: 1bb4a79ff92877da00a1e6e3b6cbe5bbd8395516b7a685c2aae090bdc3cd0837