Windows Defender

Microsoft.WindowsDefender :: 7.1.10128.1 (Management Pack)

Windows Defender monitoring management pack

Summary

This management pack helps you monitor health of Windows Defender on a machine.

Management Pack Elements

Classes (3)

 DisplayNameIDBase ClassAbstractHostedSingletonGroupExtensionAccessibility
Microsoft.WindowsDefender.ProtectedServerProtected EndpointMicrosoft.WindowsDefender.ProtectedServerMicrosoft.Windows.ComputerRoleFalseTrueFalseFalseFalsePublic
Microsoft.WindowsDefender.ProtectedServerCandidateProtected CandidateMicrosoft.WindowsDefender.ProtectedServerCandidateMicrosoft.Windows.ComputerRoleFalseTrueFalseFalseFalsePublic
Microsoft.WindowsDefender.UnprotectedServerUnprotected EndpointMicrosoft.WindowsDefender.UnprotectedServerMicrosoft.Windows.ComputerRoleFalseTrueFalseFalseFalsePublic

DataSource Modules (8)

 DisplayNameIDIsolationAccessibility
Microsoft.WindowsDefender.ProtectedServer.AMEngineEventDSTypeEvent Data SourceMicrosoft.WindowsDefender.ProtectedServer.AMEngineEventDSTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServer.AntimalwareDefinitionsEventDSTypeAntimalwareDefinitions Data SourceMicrosoft.WindowsDefender.ProtectedServer.AntimalwareDefinitionsEventDSTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServer.AntimalwareScanEventDSTypeServer Protection Event Data SourceMicrosoft.WindowsDefender.ProtectedServer.AntimalwareScanEventDSTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServer.DSProtected Endpoint Data SourceMicrosoft.WindowsDefender.ProtectedServer.DSAnyPublic
Microsoft.WindowsDefender.ProtectedServer.MalwareActivity.MalwareActivityEventsWithAdditionalInfoDSTypeMalwareActivity Data SourceMicrosoft.WindowsDefender.ProtectedServer.MalwareActivity.MalwareActivityEventsWithAdditionalInfoDSTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServer.RTPEventDSTypeRTP Event Data SourceMicrosoft.WindowsDefender.ProtectedServer.RTPEventDSTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServerCandidate.DSProtected Candidate Data SourceMicrosoft.WindowsDefender.ProtectedServerCandidate.DSAnyPublic
Microsoft.WindowsDefender.UnprotectedServer.DSUnprotected Endpoint Data SourceMicrosoft.WindowsDefender.UnprotectedServer.DSAnyPublic

ProbeAction Modules (2)

 DisplayNameIDIsolationAccessibility
Microsoft.WindowsDefender.AntimalwareWMIProbeActionModuleTypeWindows Defender WMI Probe ActionMicrosoft.WindowsDefender.AntimalwareWMIProbeActionModuleTypeAnyInternal
Microsoft.WindowsDefender.ProtectedServer.MalwareActivity.GetInfectionStatusWmiProbeTypeWMI Probe for Infection StatusMicrosoft.WindowsDefender.ProtectedServer.MalwareActivity.GetInfectionStatusWmiProbeTypeAnyInternal

Unit Monitor Types (6)

 DisplayNameIDAccessibilitySupport Monitor Recalculate
Microsoft.WindowsDefender.ProtectedServer.MalwareActivity.ActiveMalwareMonitorTypeActive Malware Monitor TypeMicrosoft.WindowsDefender.ProtectedServer.MalwareActivity.ActiveMalwareMonitorTypePublicTrue
Microsoft.WindowsDefender.ProtectedServer.MalwareActivity.OutbreakMonitorTypeMalware Detection Monitor TypeMicrosoft.WindowsDefender.ProtectedServer.MalwareActivity.OutbreakMonitorTypePublicTrue
Microsoft.WindowsDefender.SecurityVulnerability.AMEngineMonitorTypeWindows Defender Engine Monitor TypeMicrosoft.WindowsDefender.SecurityVulnerability.AMEngineMonitorTypePublicTrue
Microsoft.WindowsDefender.SecurityVulnerability.AntimalwareDefinitions.MonitorTypeWindows Defender Definitions Monitor TypeMicrosoft.WindowsDefender.SecurityVulnerability.AntimalwareDefinitions.MonitorTypePublicTrue
Microsoft.WindowsDefender.SecurityVulnerability.AntimalwareScan.MonitorTypeWindows Defender Scan Monitor TypeMicrosoft.WindowsDefender.SecurityVulnerability.AntimalwareScan.MonitorTypePublicTrue
Microsoft.WindowsDefender.SecurityVulnerability.RTPMonitorTypeWindows Defender Real-time Protection Monitor TypeMicrosoft.WindowsDefender.SecurityVulnerability.RTPMonitorTypePublicTrue

Discoveries (3)

 DisplayNameIDTargetEnabled
Microsoft.WindowsDefender.ProtectedServer.DiscoveryProtected Endpoint DiscoveryMicrosoft.WindowsDefender.ProtectedServer.DiscoveryMicrosoft.WindowsDefender.ProtectedServerCandidateTrue
Microsoft.WindowsDefender.ProtectedServerCandidate.DiscoveryProtected Endpoint Candidate DiscoveryMicrosoft.WindowsDefender.ProtectedServerCandidate.DiscoveryMicrosoft.Windows.ComputerTrue
Microsoft.WindowsDefender.UnprotectedServer.DiscoveryUnprotected Endpoint DiscoveryMicrosoft.WindowsDefender.UnprotectedServer.DiscoveryMicrosoft.Windows.ComputerTrue

Aggregate Monitors (2)

 DisplayNameIDTargetAlgorithmCategoryEnabledAlert GenerateAccessibility
Microsoft.WindowsDefender.ProtectedServer.WindowsDefender.Aggregate.MonitorProtected Endpoint Aggregate MonitorMicrosoft.WindowsDefender.ProtectedServer.WindowsDefender.Aggregate.MonitorMicrosoft.WindowsDefender.ProtectedServerWorstOfCustomTrueFalsePublic
Microsoft.WindowsDefender.UnprotectedServer.WindowsDefender.Aggregate.MonitorUnprotected Endpoint Aggregate MonitorMicrosoft.WindowsDefender.UnprotectedServer.WindowsDefender.Aggregate.MonitorMicrosoft.WindowsDefender.UnprotectedServerWorstOfCustomTrueFalsePublic

Unit Monitors (6)

 DisplayNameIDTargetCategoryEnabledAlert GenerateAccessibility
Microsoft.WindowsDefender.ProtectedServer.ActiveMalware.MonitorActive Malware MonitorMicrosoft.WindowsDefender.ProtectedServer.ActiveMalware.MonitorMicrosoft.WindowsDefender.ProtectedServerSecurityHealthTrueTruePublic
Microsoft.WindowsDefender.ProtectedServer.AMStatus.MonitorWindows Defender Service Status MonitorMicrosoft.WindowsDefender.ProtectedServer.AMStatus.MonitorMicrosoft.WindowsDefender.ProtectedServerCustomTrueTruePublic
Microsoft.WindowsDefender.ProtectedServer.AntimalwareDefinitions.MonitorWindows Defender Definitions MonitorMicrosoft.WindowsDefender.ProtectedServer.AntimalwareDefinitions.MonitorMicrosoft.WindowsDefender.ProtectedServerCustomTrueTruePublic
Microsoft.WindowsDefender.ProtectedServer.AntimalwareScan.MonitorWindows Defender Scan MonitorMicrosoft.WindowsDefender.ProtectedServer.AntimalwareScan.MonitorMicrosoft.WindowsDefender.ProtectedServerCustomTrueTruePublic
Microsoft.WindowsDefender.ProtectedServer.MalwareActivity.OutbreakMonitorMalware Detection MonitorMicrosoft.WindowsDefender.ProtectedServer.MalwareActivity.OutbreakMonitorMicrosoft.WindowsDefender.ProtectedServerSecurityHealthTrueTruePublic
Microsoft.WindowsDefender.ProtectedServer.RTPStatus.MonitorReal-Time Protection Status MonitorMicrosoft.WindowsDefender.ProtectedServer.RTPStatus.MonitorMicrosoft.WindowsDefender.ProtectedServerCustomTrueTruePublic