• There’s a problem using Windows Defender for virus protection – win update

    Home » Forums » AskWoody support » Windows » Windows 10 » Windows 10-other » There’s a problem using Windows Defender for virus protection – win update

    Author
    Topic
    #2730024

    You can’t block windows update – you need it to update Defender

    Viewing 4 reply threads
    Author
    Replies
    • #2730052

      Did you mean to post this as a new topic?

      cheers, Paul

    • #2730074

      On Windows 10 machines that I manage for family, updates are delayed either a few weeks by Group Policy or simply setting the network connection to Metered. This depends on whether it is a Pro or Home edition.

      So, to update Defender, I created a scheduled task to run at logon. The Program is C:\Program Files\Windows Defender\MpCmdRun.exe and the Argument is -SignatureUpdate. I’m sure I’ve seen this shared before by others on this forum.

    • #2730088

      When you use the defer updates to a later date it does not defer the definition updates.

      It all depends on HOW you postpone Windows updating.  If you turn off Windows update services, yes that is way too impactful.

      Susan Bradley Patch Lady/Prudent patcher

    • #2730180

      You can’t block windows update – you need it to update Defender

      IMO that’s not quite accurate.

      If you block Windows Update‘s default mechanism – Windows Update Orchestrator – then Defender automatically uses a failback mechanism – the Background Intelligent Transfer Service (or BITS) – usually after 1-2 days, to keep its AV signatures up-to-date… but not Defender engine updates.

      In effect, Defender piggy-backs on the local Windows Update service to reduce local resource usage… but the Defender signature update mechanism is not dependent on the service. This may be because signature updates don’t require the Orchestrator service’s arbiter to work out how or in what order to install them. (See Microsoft’s How Windows Update works article for more info.)

      Unless something has changed since I last posted about this (Windows 11?), Windows Update and Microsoft Update use CDNs as download sources, including Defender engine updates whilst Defender signatures via BITS come direct from Microsoft sources, not CDNs.

      Hope this helps…

      1 user thanked author for this post.
    • #2730197

      FYI: CDNs = Content Delivery Networks.

      I had to look it up…this old brain just can’t deal with all the acronyms and abbreviations any more.

      My mistake, you’re quite right.

    Viewing 4 reply threads
    Reply To: There’s a problem using Windows Defender for virus protection – win update

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: