You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: defender-endpoint/microsoft-defender-antivirus-updates.md
+11-23Lines changed: 11 additions & 23 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -92,7 +92,7 @@ For more information, see [Manage the sources for Microsoft Defender Antivirus p
92
92
93
93
## Platform and engine releases
94
94
95
-
All our updates contain:
95
+
Updates contain:
96
96
97
97
- Performance improvements
98
98
- Serviceability improvements
@@ -108,8 +108,16 @@ All our updates contain:
108
108
109
109
#### What's new
110
110
111
-
- item
112
-
- item
111
+
- IMPORTANT On servers 2019 and above, new binary (MpDefenderCoreService.exe) will be included in the update package to support future service improvements (more info to follow).
112
+
- Improved detection logic to reduce false positives related to the ASR Rule Block Office applications from injecting code into other processes
113
+
- Fixed issue that could lead to a Windows device to be marked as non-compliant in Intune during Microsoft Defender Antivirus startup.
114
+
- Fixed issue with Catchup scan configuration, where the policy setting (DaysUntilAggressiveCatchupQuickScan) was not honored.
115
+
- Fixed SharedSignatureRoot processing when an empty value was set.
116
+
- Fixed problem with Device Control where certain file systems (like FAT, FAT32, exFAT) where volume information was displayed when a block rule was defined.
117
+
- Improved performance in specific scenarios where network files were accessed.
118
+
- Fixed an issue on Azure Virtual Desktop where the Intune policy was not being honored.
119
+
- Fixed potential deadlock for Custom Detection Rules (https://learn.microsoft.com/en-us/defender-xdr/custom-detection-rules on the Windows client)
120
+
- Fixed bug where exclusions not being honored with AMSI.
- New event log added (`5016`) to report Microsoft Defender Antivirus self-healed when a deadlock is detected during shutdown.
145
153
- Fixed a prioritization issue with [full scans](mdav-scan-best-practices.md) initiated from the portal that resulted in longer than expected full scan duration.
- Support phase: **Security and Critical Updates**
154
-
155
-
#### What's new
156
-
157
-
- Fixed issue where Microsoft Defender Antivirus was not properly changing state when non-Microsoft antivirus/antimalware software was installed and [Windows Defender Application Control](/windows/security/application-security/application-control/windows-defender-application-control/wdac) (WDAC) with [Intelligent Security Graph](/windows/security/application-security/application-control/windows-defender-application-control/design/use-wdac-with-intelligent-security-graph) were enabled.
158
-
- Fixed deadlock issue on [VDI](deployment-vdi-microsoft-defender-antivirus.md) that occurred when loading corrupted update files from UNC share.
159
-
- Custom scans started with [Start-MpScan](/powershell/module/defender/start-mpscan) are now reported in the event log.
160
-
- Fixed potential deadlock that occurred on volume mount scanning.
161
-
- Fixed issue where Microsoft Defender Antivirus did not allow applications to clean up temporary files.
162
-
- Fixed potentially packet loss due to [network protection](network-protection.md) shutdown that could lead to deadlock.
163
-
- Implemented performance improvements for scenarios where WDAC is enabled with Intelligent Security Graph.
164
-
- Fixed an issue where an Outlook exclusion for the ASR rule [Block Office applications from injecting code into other processes](/defender-endpoint/attack-surface-reduction-rules-reference#block-office-applications-from-injecting-code-into-other-processes) was not honored.
165
-
- Fixed a race condition during the startup of [endpoint data loss prevention](/purview/endpoint-dlp-getting-started) such that, in certain environments, some system files could be corrupted.
166
-
167
155
### Previous version updates: Technical upgrade support only
168
156
169
157
After a new package version is released, support for the previous two versions is reduced to technical support only. For more information about previous versions, see [Microsoft Defender Antivirus updates: Previous versions for technical upgrade support](msda-updates-previous-versions-technical-upgrade-support.md).
0 commit comments