Microsoft updates the integrated antivirus in Windows 10 and 11 frequently and without much fanfare. As you noticed Neowin, the recent update is at least worth a short poke. Not long after the release of classic service updates, which fixed seven dozen vulnerabilities not only in Windows, the Redmonds released an update of Defender for installation media, the same version went into live installations.
It states that it is a good idea to update Defender on Windows installation media every three months. In the first hours, the operating system may be vulnerable because it simply does not contain the current version of the antivirus. We recommend that you check for updates immediately after installing Windows.
Ideally, look for them in the Windows Update service, which will also update Defender for you. In turn, Microsoft recommends that you regularly update the installation media of the operating system to at least reduce the security gap of the installed operating system.
Update Defender immediately after installing Windows
This applies to both Windows 11 and Windows 10 Enterprise, Pro and Home editions. Information a update package further apply to Windows Server 2019 and Windows Server 2016. The newly released update includes the following versions of Defender components:
client: 4.18.23070.1004 kernel: 1.1.23070.1005 antimalware info: 1.395.68.0
The antimalware definitions of version 1.395.68.0 were released on August 10. Because this component is updated daily, you can download newer releases on existing Windows 10 and 11 installations. (At the time of writing the current version is 1.395.420.0.)
In the list of newly detected threats since version 1.395.68.0, we can find AutoKMS in addition to a number of Trojan horses. This software will be familiar to pirates, as it allows you to periodically activate Windows operating systems or Office tools, although you do not own a legal license.
It’s not necessarily malware. Since it may come from a questionable source, it is quite possible that it contains malicious code. It’s nothing new that antivirus systems detect and block it. Microsoft Defender just joined them. Similarly, it now detects VulnerableWerFaultSecure, which is also used to run software without a valid license.
New versions of Defender also routinely include various fixes and optimizations to keep the product running smoothly. However, Microsoft no longer specifies these, it is a common and desirable service.
Resources: Microsoft Support via Neowin
2023-08-19 08:45:29
#Update #Defender #Windows #installation #media #version #blocks #AutoKMS