Windows Defender found a threat — what to do next
Windows Defender detected malware and quarantined it automatically. This keeps it from running but does not remove it yet. Read the threat name and follow the recommended action.
When Defender finds a threat, it quarantines it (moves it to a safe folder where it cannot run). The threat is no longer active on your computer. If Defender recommends removing it, do so. If you trust the file (it is from a legitimate program), you can restore it and add it to exclusions.
- ✓Know what the threat is (the alert will tell you)
- ✓Know whether you trust the file that was detected
- ✓Have Windows Defender running
Fix-IT-Bot will walk you through each step, just tap, no typing needed.
Skip, I just want a technicianCommon mistakes to avoid
- Allowing a threat without understanding what it is — research it first
- Ignoring the alert thinking it is a false positive — let the full scan complete
- Restarting the computer without running a scan — threats may still be active elsewhere
Signs you need professional help
- If Defender finds multiple threats and you are unsure whether to remove them. If the full scan keeps finding threats. If you allowed a threat and your computer is now acting strange.
Book a technician
We can fix most issues remotely in 15 minutes. Book your weekend slot and we handle the rest.
Was this guide helpful?
Can't fix it yourself?
Most issues are resolved remotely in 15 minutes. Weekend appointments only, no parts, no in-home visit needed.
