Microsoft Security Essentials

From ForensicsWiki
Jump to: navigation, search

Information icon.png

Please help to improve this article by expanding it.
Further information might be found on the discussion page.

Quarantine directory

On Windows XP:

C:\Documents and Settings\All Users\Application Data\Microsoft\Microsoft Antimalware\Quarantine

On Windows 7:

C:\ProgramData\Microsoft\Microsoft Antimalware\Quarantine

Scan cache

C:\ProgramData\Microsoft\Microsoft Antimalware\Scans\History\CacheManager\MpScanCache-0.bin

File system cache (Windows Defender)

C:\ProgramData\Microsoft\Windows Defender\Scans\History\CacheManager\MpSfc.bin

To build run:

"%programfiles%\Windows Defender\MpCmdRun.exe" –BuildSFC

External Links