Specify threats upon which default action should not be taken when detected

This policy setting customize which remediation action will be taken for each listed Threat ID when it is detected during a scan. Threats should be added under the Options for this setting. Each entry must be listed as a name value pair. The name defines a valid Threat ID while the value contains the action ID for the remediation action that should be taken. Valid remediation action values are:2 = Quarantine3 = Remove6 = Ignore

Additional Information

  1. Registry path is:

    HKEY_LOCAL_MACHINE -> Software -> Policies -> Microsoft -> Windows Defender -> Threats # Threats_ThreatIdDefaultAction; HKEY_LOCAL_MACHINE -> Software -> Policies -> Microsoft -> Windows Defender -> Threats -> ThreatIdDefaultAction

  2. The Administrative Template path is:

    Windows Components -> Windows Defender -> Threats


