Does Windows Defender Antivirus and Windows Defender Firewall keep my laptop 100% secure?


it does use 200 mb and more and i dont have nothing confidential on my pc i literally dont care just can nuke whole installation and restore..
Aw...
No airbag
We die like men
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    Huawei MateBook D15
    CPU
    Ryzen 5 3500U
    Memory
    8GB
    Graphics Card(s)
    Vega 8
    Screen Resolution
    FHD
    Hard Drives
    256GB Samsung SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Microsoft Defender
  • Operating System
    Windows 10 Pro 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI GS73 6RF Stealth Pro
    CPU
    intel core i7 6700HQ
    Memory
    16GB
    Graphics card(s)
    Nvidia Geforce GTX1060 (6GB)
    Screen Resolution
    FHD
    Hard Drives
    128GB SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Windows Defender
Aw...
No airbag
We die like men
yes i learned in 30 years of using pcs av's are scam especially third party ones.. if you are scared use defender if you are not strip everything out
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    PC/Desktop
    Manufacturer/Model
    -
    CPU
    4770k
    Motherboard
    Asus Maximus Formula VI
    Memory
    16 gb Kingston
    Graphics Card(s)
    2070 super
yes i learned in 30 years of using pcs av's are scam especially third party ones.. if you are scared use defender if you are not strip everything out
As I'm working for a website in my country to provide latest windows apps, have to use some popular AVs on my virtual machine to ensure users won't get into any troubles during installation. but I agree with you. maybe we can say AV is a virus itself because it uses resources like a virus. and every time a new virus, trojan or ransomware released, all AVs acted like blind police :)
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    Huawei MateBook D15
    CPU
    Ryzen 5 3500U
    Memory
    8GB
    Graphics Card(s)
    Vega 8
    Screen Resolution
    FHD
    Hard Drives
    256GB Samsung SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Microsoft Defender
  • Operating System
    Windows 10 Pro 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI GS73 6RF Stealth Pro
    CPU
    intel core i7 6700HQ
    Memory
    16GB
    Graphics card(s)
    Nvidia Geforce GTX1060 (6GB)
    Screen Resolution
    FHD
    Hard Drives
    128GB SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Windows Defender
If the fileless malware writes something to the disk, would MS Defender then detect that happening, and then scan the file?
Or when would MS Defender scan it and act upon it?
Modern security products are embedded as kernel filter drivers. They spy on system activity, and have heuristics to detect "suspicious" patterns of behavior related to system calls or file activity. In some cases, they can block a process from doing something.

The offline laptop only has had internet connection for about 15 minutes in total.

It had internet connection for 5-10 minutes during the initial Windows setup (choose languge, create user etc) - but here it said it was searching for updates etc.
And then internet connection again for about 5 minutes after logged in and entered Windows for the first time.
After that, I turned of its Wifi in Windows and disabled its Networks adapters in Device Manager.

So I am not sure, that it managed to download all the latest updates for Windows and MS Defender, before I cut its internet connection.
Therefor I want to know, if it has more than just a basic version of Windows 11 MS Defender pre-installed?
There's always a base version of Defender in every install image, it's presumed that Windows Update will eventually catch up and prioritize downloading platform and signature updates as soon as possible.

The solution to better security is to install the latest Defender updates into the install image, so while it still may be out of date, is less outdated than having Defender files from a few months or a year ago. IT pros for large organizations will do this.

A PC purchased from a large vendor (ie. Dell, HP, Lenovo, etc.) will have a factory install image that's refreshed periodically. But sometimes there's a lag between when it's imaged and gets into your hands.

The bottom line: If you're concerned about security, then take concrete actions to manage it yourself. Speculating about this or that random security imperfection isn't going to change anything. Either learn how to make your own updated install images, or after your first desktop logon -- immediately don't do anything except to open Settings -> Windows Update and scan for new updates.
 

My Computer

System One

  • OS
    Windows 7
copy everything on your main system with a good AV like Kaspersky or Bit defender or ESET or Norton or ...

use parted magic bootable version (Linux) to create a bootable USB drive.

Thank you for your input

If the fileless malware starts writing something to the disk, would MS Defender then detect that happening and stop it from writing to disk?

And what about the data the filess malware wrote to the disk? Will MS Defender take care of it?
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
Modern security products are embedded as kernel filter drivers. They spy on system activity, and have heuristics to detect "suspicious" patterns of behavior related to system calls or file activity. In some cases, they can block a process from doing something.
So you would trust, that MS Defender protects against fileless malware?

Thank you
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    Huawei MateBook D15
    CPU
    Ryzen 5 3500U
    Memory
    8GB
    Graphics Card(s)
    Vega 8
    Screen Resolution
    FHD
    Hard Drives
    256GB Samsung SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Microsoft Defender
  • Operating System
    Windows 10 Pro 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI GS73 6RF Stealth Pro
    CPU
    intel core i7 6700HQ
    Memory
    16GB
    Graphics card(s)
    Nvidia Geforce GTX1060 (6GB)
    Screen Resolution
    FHD
    Hard Drives
    128GB SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Windows Defender
what do you mean "fileless malware"?
"Unlike traditional malware, which typically requires a file to be downloaded and installed, fileless malware operates in memory or manipulates native tools, making it harder to detect and remove."

"Fileless malware is a type of malicious software that uses legitimate programs to infect a computer. It does not rely on files and leaves no footprint, making it challenging to detect and remove."

Microsoft Defender Antivirus protects against fileless malware through these capabilities:
  • Detecting script-based techniques by using AMSI, which provides the capability to inspect PowerShell and other script types, even with multiple layers of obfuscation
  • Detecting and remediating WMI persistence techniques by scanning the WMI repository, both periodically and whenever anomalous behavior is observed
  • Detecting reflective DLL injection through enhanced memory scanning techniques and behavioral monitoring

I believe its good enough
 

My Computer

System One

  • OS
    Windows 11
    Computer type
    Laptop
"Unlike traditional malware, which typically requires a file to be downloaded and installed, fileless malware operates in memory or manipulates native tools, making it harder to detect and remove."

"Fileless malware is a type of malicious software that uses legitimate programs to infect a computer. It does not rely on files and leaves no footprint, making it challenging to detect and remove."

Microsoft Defender Antivirus protects against fileless malware through these capabilities:
  • Detecting script-based techniques by using AMSI, which provides the capability to inspect PowerShell and other script types, even with multiple layers of obfuscation
  • Detecting and remediating WMI persistence techniques by scanning the WMI repository, both periodically and whenever anomalous behavior is observed
  • Detecting reflective DLL injection through enhanced memory scanning techniques and behavioral monitoring

I believe its good enough
Understood.
I think "Memory integrity" option in windows defender is for this kind of malwares. as I know it uses virtualization to prevent those "fileless" malwares. not sure sorry.
 

My Computers

System One System Two

  • OS
    Windows 11 Pro 24H2
    Computer type
    Laptop
    Manufacturer/Model
    Huawei MateBook D15
    CPU
    Ryzen 5 3500U
    Memory
    8GB
    Graphics Card(s)
    Vega 8
    Screen Resolution
    FHD
    Hard Drives
    256GB Samsung SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Microsoft Defender
  • Operating System
    Windows 10 Pro 22H2
    Computer type
    Laptop
    Manufacturer/Model
    MSI GS73 6RF Stealth Pro
    CPU
    intel core i7 6700HQ
    Memory
    16GB
    Graphics card(s)
    Nvidia Geforce GTX1060 (6GB)
    Screen Resolution
    FHD
    Hard Drives
    128GB SSD + 1TB HDD
    Browser
    Microsoft Edge
    Antivirus
    Windows Defender

Latest Support Threads

Back
Top Bottom