ãŠã€ã«ã¹å¯ŸçMicrosoft Defenderææ°ã®ç¶æ ã«ä¿ã€ããšã¯ãããã€ã¹ãæ°ãããã«ãŠã§ã¢ãæ»æææ³ããä¿è·ãããããã«ããããã«éèŠã§ãã Microsoft DefenderãŠã€ã«ã¹å¯Ÿçãããã·ã ã¢ãŒãã§å®è¡ãããŠããå Žåã§ãããŠã€ã«ã¹å¯Ÿçä¿è·ãæŽæ°ããŸãã é å»¶ãšã³ãžã³ããã©ãããã©ãŒã ã眲åã®æ¥ä»ã¯ãMicrosoft DefenderãŠã€ã«ã¹å¯Ÿçããã®ä»ã® Microsoft ãã«ãŠã§ã¢å¯Ÿçã®ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã§ç¢ºèªã§ããŸã
ãã®èšäºã¯ Windows ããã€ã¹ã察象ãšããŠãããæ¬¡ã® 2 çš®é¡ã®æŽæ°ããã°ã©ã ã«é¢ããæ å ±ãå«ãŸããŠããŸãã
Microsoft DefenderãŠã€ã«ã¹å¯Ÿçã§ã¯ãã¯ã©ãŠãæäŸã®ä¿è· (Microsoft Advanced Protection Service ãŸã㯠MAPS ãšãåŒã°ããŸã) ã䜿çšãããŸãã Defender ãŠã€ã«ã¹å¯Ÿçã¯ãåçã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã宿çã«ããŠã³ããŒãããŸãã ãããã®æŽæ°ããã°ã©ã ã¯ãéåžžã®ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã«åã£ãŠä»£ããããã§ã¯ãããŸããã ãšã³ãžã³ã®æŽæ°ããã°ã©ã ã¯ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®æŽæ°ããã°ã©ã ã«å«ãŸããŠãããæ¯æãªãªãŒã¹ãããŸãã
æŽæ°ããã°ã©ã ã¯ã次㮠KB ã§ãªãªãŒã¹ãããŸãã
Microsoft Defender ãŠã€ã«ã¹å¯Ÿç: KB2267602
System Center Endpoint Protection: KB2461484
ã¯ã©ãŠãé ä¿¡ã®ä¿è· ã¯åžžã«ãªã³ã§ãããæ©èœããã«ã¯ã€ã³ã¿ãŒããããžã®ã¢ã¯ãã£ããªæ¥ç¶ãå¿ èŠã§ãã ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®æŽæ°ã¯ãããªã·ãŒã䜿çšããŠæ§æã§ããã¹ã±ãžã¥ãŒã«ãããééã§çºçããŸãã
Microsoft Defender ãŠã€ã«ã¹å¯Ÿçã«ã¯ããã©ãããã©ãŒã æŽæ°ããã°ã©ã ãšåŒã°ããææ¬¡æŽæ°ããã°ã©ã (KB4052623) ãå¿ èŠã§ãã
æŽæ°ããã°ã©ã ã®é åžã¯ã次ã®ããããã®æ¹æ³ã§ç®¡çã§ããŸãã
- Windows Server Update Service (WSUS)
- Microsoft Configuration Manager
- ãããã¯ãŒã¯å ã®ãšã³ããã€ã³ãã« Microsoft ãš Windows ã®æŽæ°ããã°ã©ã ãå±éããããã«äœ¿çšããéåžžã®æ¹æ³ã
- UNC å ±æ
詳现ã«ã€ããŠã¯ããMicrosoft Defender ãŠã€ã«ã¹å¯Ÿçä¿è·æŽæ°ããã°ã©ã ã®ãœãŒã¹ã管çããããåç §ããŠãã ããã
ææ¬¡æŽæ°ããã°ã©ã ã¯æ®µéçã«ãªãªãŒã¹ããããããWindow Server Update Services ã«è€æ°ã®ããã±ãŒãžã衚瀺ãããŸãã
ãã®èšäºã§ã¯ãåºç¯ãªãªãªãŒã¹ ãã£ãã«ã«å«ãŸãã倿Žã®äžèЧã瀺ããŸãã ãã¡ãã§ææ°ã®åºç¯ãªãã£ãã«ã®ãªãªãŒã¹ãã芧ãã ããã
段éçãªããŒã«ã¢ãŠã ããã»ã¹ã®è©³çŽ°ãšæ¬¡ã®ãªãªãŒã¹ã®è©³çްã«ã€ããŠã¯ããMicrosoft Defender æŽæ°ããã°ã©ã ã®æ®µéçãªããŒã«ã¢ãŠã ããã»ã¹ã管çããããåç §ããŠãã ããã
ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®æŽæ°ããã°ã©ã ã®è©³çްã«ã€ããŠã¯ããMicrosoft DefenderãŠã€ã«ã¹å¯Ÿçããã³ãã®ä»ã® Microsoft ãã«ãŠã§ã¢å¯Ÿçã®ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ããåç §ããŠãã ããã
Microsoft Defenderããã»ã¹ã®äžèŠ§ãæ¢ããŠããå Žåã¯ãããããã· ãµãŒããŒã®ãµãŒãã¹ URL ãžã®ã¢ã¯ã»ã¹ãæå¹ã«ãããã§æäŸMicrosoft Defender for Endpointã¹ãã¬ããã·ãŒããåç §ããŠãã ããã ãã®ã·ãŒãã«ã¯ããããã¯ãŒã¯ãæ¥ç¶ã§ããå¿ èŠããããµãŒãã¹ãšãã®é¢é£ URL ãäžèŠ§è¡šç€ºãããŸãã
ãšã³ããã€ã³ã DLP ãããã€ã¹å¶åŸ¡ãªã©ã®ä»ã®ä¿è·æ©èœãå®è¡äžã®ããã»ã¹ãã¢ã¯ãã£ãã«ç£èŠããŠããå Žåããã©ãããã©ãŒã ã®æŽæ°ãäžæçã«å»¶æã§ããŸãã ãã©ãããã©ãŒã ã®æŽæ°ã¯ãåèµ·ååŸããŸãã¯ç£èŠãããŠãããã¹ãŠã®ãµãŒãã¹ã忢ãããšãã«å詊è¡ãããŸãã
Microsoft Endpoint Configuration Manager/Windows Server Update Services (MECM/WSUS) ã«ã¿ãã°ã®ã«ããŽãª Microsoft Defender for Endpointã«ã¯ãKB5005292ã®
MSSenseãµãŒãã¹ã®æŽæ°ããã°ã©ã ãå«ãŸããŠããŸãã KB5005292ã«ã¯ãMicrosoft Defender for Endpoint ãšã³ããã€ã³ãã®æ€åºãšå¿ç (EDR) ã»ã³ãµãŒã®æŽæ°ãšä¿®æ£ãå«ãŸããŠããŸãã 詳现ã«ã€ããŠã¯ããEDR ã»ã³ãµãŒã®æŽæ°ããã°ã©ã Microsoft Defender for EndpointããšãWindows Microsoft Defender for Endpointã®æ°æ©èœããåç §ããŠãã ããã
Updatesã«å«ãŸãããã®:
- ããã©ãŒãã³ã¹ã®åŒ·å
- ãµãŒãã¹æ§ã®æ¹å
- çµ±åã®æ©èœåŒ·å (ã¯ã©ãŠããMicrosoft Defender XDR)
- ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã®ããŒãžã§ã³: 1.437.1.0
- ãªãªãŒã¹æ¥: 2025 幎 9 æ 16 æ¥ (ãšã³ãžã³) / 2025 幎 9 æ 17 æ¥ (ãã©ãããã©ãŒã )
- ãã©ãããã©ãŒã : 4.18.25080.5
- ãšã³ãžã³: 1.1.25080.5
- ãµããŒã ãã§ãŒãº: ã»ãã¥ãªãã£ãšéèŠãªæŽæ°ããã°ã©ã
管çè 以å€ã®ããã»ã¹ãå ±æçœ²åã®æŽæ°ãããªã¬ãŒã§ããããã«ããããšã§ãDefender ã®æŽæ°ã®ä¿¡é Œæ§ãåäžããäžèŠãªç¹æš©ã®èŠä»¶ãæžããŸãã
- ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã®ããŒãžã§ã³: 1.435.11.0
- ãªãªãŒã¹æ¥: 2025 幎 8 æ 5 æ¥ (ãšã³ãžã³) / 2025 幎 8 æ 6 æ¥ (ãã©ãããã©ãŒã )
- ãã©ãããã©ãŒã : 4.18.25070.5
- ãšã³ãžã³: 1.1.25070.4
- ãµããŒã ãã§ãŒãº: ã»ãã¥ãªãã£ãšéèŠãªæŽæ°ããã°ã©ã
æ¡åŒµããã·ã ã¢ãŒãã¹ãã£ã³åäœ Microsoft Defenderãããã·ã ã¢ãŒãã®å Žåãããªã·ãŒèšå® DisableScanOnUpdate ã§ç¹ã«èšå®ãããŠããªãéãã眲åã®æŽæ°åŸã«ãŠã€ã«ã¹å¯Ÿçã¹ãã£ã³ã¯å®è¡ãããŸããã
æ¹ãã鲿¢åŠçã®åŒ·å ãã«ãã¹ã¬ããç°å¢ã§ã®æ¹ãã鲿¢ã®æ§æããã»ã¹ãæé©åããããä¿¡é Œæ§ã®é«ãåäœãå®çŸããŸããã
ããžã¿ã«çœ²åæ€èšŒã®ããã©ãŒãã³ã¹åäž ããžã¿ã«çœ²åæ€èšŒã®å¹çãåäžããã·ã¹ãã å šäœã®ããã©ãŒãã³ã¹ãåäžããŸããã
æŽç·Žããã ASR ã«ãŒã«ã®é€å€åŠç 匷åãããé€å€åŠçãšãæ»æè¡šé¢ã®çž®å° (ASR) ã«ãŒã«ã®èª€æ€ç¥ã解決ããŸãã:Office ã¢ããªã±ãŒã·ã§ã³ãã³ãŒããä»ã®ããã»ã¹ã«æ¿å ¥ããã®ããããã¯ããŸãã
- ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã®ããŒãžã§ã³: 1.433.2.0
- ãªãªãŒã¹æ¥: 2025 幎 7 æ 22 æ¥ (ãšã³ãžã³) / 2025 幎 7 æ 22 æ¥ (ãã©ãããã©ãŒã )
- ãã©ãããã©ãŒã : 4.18.25060.7
- ãšã³ãžã³: 1.1.25060.6
- ãµããŒã ãã§ãŒãº: ã»ãã¥ãªãã£ãšéèŠãªæŽæ°ããã°ã©ã
- ã¹ãã£ã³ã®å®å®æ§ãåäžããããšã³ãžã³ã®ã¯ã©ãã·ã¥ãé²ãããã®ãã£ã«ã¿ãŒåŠçã远å ããŸãã
- åæã¹ãã£ã³ãé²ãããã®ããã©ãŒãã³ã¹ã®åäžã ãã®å€æŽã«ãããã¯ã€ã㯠ã¹ãã£ã³ãŸãã¯ãã« ã¹ãã£ã³ãæ¢ã«å®è¡ãããŠããå Žåã
MpCmdRunãŸã㯠PowerShell (Start-Scan) ãã远å ã®ã¯ã€ã㯠ã¹ãã£ã³ãŸãã¯ãã« ã¹ãã£ã³ã¹ãã£ã³ãéå§ãããªããªããŸãã - Microsoft SIEM 以å€ã®ãœãªã¥ãŒã·ã§ã³ã«é¢é£ããMicrosoft DefenderãŠã€ã«ã¹å¯Ÿçã¹ãã£ã³ã§ãµããã©ã«ããŒã®é€å€ãé©çšãããªãåé¡ã解決ããŸããã ãã®ä¿®æ£ã«ãããæå®ãããµããã©ã«ããŒãã¹ãã£ã³ããæ£ããé€å€ãããäžèŠãªæ€åºãé²ããã·ã¹ãã å šäœã®ããã©ãŒãã³ã¹ãåäžããŸãã
- ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã®ããŒãžã§ã³: 1.431.19.0
- ãªãªãŒã¹æ¥: 2025 幎 6 æ 13 æ¥ (ãšã³ãžã³) / 2025 幎 6 æ 13 æ¥ (ãã©ãããã©ãŒã )
- ãã©ãããã©ãŒã : 4.18.25050.5
- ãšã³ãžã³: 1.1.25050.6
- ãµããŒã ãã§ãŒãº: ã»ãã¥ãªãã£ãšéèŠãªæŽæ°ããã°ã©ã
- Windows multisession SKU ãã眲åããŒãžã§ã³ç®¡çã®ã¯ã©ã€ã¢ã³ã SKU ãšããŠé©åã«åé¡ãããããã«ãªããŸãã
-
EnableDynamicSignatureDroppedEventReportingIntune ã§æ§æã䜿çšã§ããããã«ãªããŸãã ( ãã€ãã³ã ID 2011ããåç §) - Windows ãµãŒãã¹ã® ããã€ã¹ ã³ã³ãããŒã« ãã£ã«ã¿ãŒ ãã©ã€ããŒã®è¡šç€ºåãšèª¬æãæ£ãã衚瀺ãããããã«ãªããŸãã
- ã«ãŒãã« ãã©ã€ããŒã®ããã©ãŒãã³ã¹ã®åäž
- ãããã¯ãŒã¯äœ¿çšçãé«ãå Žåã®ãã±ããæå€±ã«é¢é£ãããããã¯ãŒã¯ ä¿è· ããã©ãŒãã³ã¹ã®åäž
- ãµãŒãã¹ã®ã·ã£ããããŠã³äžã®ãããã¯ãŒã¯ä¿è·ã®ä¿¡é Œæ§ã®åäž
-
ScanOnlyIfIdleãšã¹ãã£ã³ã®åªå é äœãå«ããšã³ãªãããããã€ãã³ã ID 1000 - ãšã¯ã¹ãããŒã©ãŒã§ã®ããã€ã¹å¶åŸ¡ Windows Portal ããã€ã¹ (WPD) ããã€ã¹æ€åºã®åŒ·åã (ããã€ã¹å¶åŸ¡ã®è©³çްã«ã€ããŠã¯ãã ããã€ã¹å¶åŸ¡ããªã·ãŒã®ãµã³ãã«ãšã·ããªãªããåç §ããŠãã ãã)ã
- 眲åã®çºè¡ãšçœ²åã®ã€ã³ã¹ããŒã«æ¥æã® ããã€ã¹æ£åžžæ§ã¬ããŒã ã®äžäžèŽã解決ããŸãã
- æ¡åŒµå±æ§ã䜿çšããŠãã¡ã€ã«/ãã©ã«ããŒãã¹ãã£ã³ãããšãã®ããã©ãŒãã³ã¹ã®åäž
- ãã£ã¹ã¯ã®å ¥åºåãéå°ãªå Žåã«ã¯ã©ãã·ã¥ãåé¿ããããã® Defender ã«ãŒãã« ãã©ã€ããŒã®ä¿¡é Œæ§ã®åäž
- ã¡ã¢ãªäœ¿çšéãš DNS ãã©ããã£ã³ã°ã®åé¡ã«å¯ŸåŠããããã«ãCore Service 1DS Manager ãã¬ã¡ã㪠ã¢ãžã¥ãŒã«ã«ææ°ããã¯ãªããµããŒãã远å ããŸãã
- ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹æŽæ°ããã°ã©ã ã®ããŒãžã§ã³: 1.429.3.0
- ãªãªãŒã¹æ¥: 2025 幎 5 æ 14 æ¥ (ãšã³ãžã³) / 2025 幎 5 æ 22 æ¥ (ãã©ãããã©ãŒã )
- ãã©ãããã©ãŒã : 4.18.25040.2
- ãšã³ãžã³: 1.1.25040.1
- ãµããŒã ãã§ãŒãº: ã»ãã¥ãªãã£ãšéèŠãªæŽæ°ããã°ã©ã
- ä¿¡é Œããããã¡ã€ã«ããããã¯ã§ããªãã£ã TVM ãããã¯ãä¿®æ£ããŸãã
- ãã©ãããã©ãŒã æŽæ°Microsoft Defenderã¿ã€ã ã¹ã¿ã³ããä¿®æ£ããå®éã®æŽæ°æå»ãåæ ããŸããã
- 1002 ã€ãã³ã (ãã«ãŠã§ã¢å¯Ÿçã¹ãã£ã³ãå®äºããåã«åæ¢ãããŸãã) ã«ã¯ã忢çç±ã®è©³çްãå«ãŸããããã«ãªããŸããã
- ã¹ãã£ã³ ããªã¬ãŒãã¢ã€ãã«æã®ã¹ãã£ã³ãªã©ã 1000 ã€ãã³ã (ã¹ãã£ã³éå§) ã«è©³çްã远å ããŸããã
- "èš±å¯" 䟵害ã€ã³ãžã±ãŒã¿ãŒ (IoC) ãæ£ããåŠçããããã«ãæ»æé¢ã®çž®å°ãã¡ã€ã«åŠçãæ¹åãããŸããã
- åèµ·åãŸãã¯äŒæ¢ç¶æ ã®ãã·ã³ã®æ£åžžæ§ã¬ããŒãã®æ¹åã
- Smart App Control (SAC) ã®ä¿¡é Œããããã¡ã€ã«åŠçã®ããã©ãŒãã³ã¹ãåäžããŸããã
- ãªãã©ã€ã³ ããªã³ã¿ãŒã® ããã€ã¹å¶åŸ¡ ããžãã¯ãæ¹åãããŸããã
以åã®ããŒãžã§ã³ã®æŽæ°ããã°ã©ã : ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒãã®ã¿
æ°ããããã±ãŒãž ããŒãžã§ã³ããªãªãŒã¹ãããåŸã以åã® 2 ã€ã®ããŒãžã§ã³ã®ãµããŒãã¯ãã¯ãã«ã« ã¢ããã°ã¬ãŒãã®ãµããŒãã®ã¿ã«åæžãããŸãã 以åã®ããŒãžã§ã³ã®è©³çްã«ã€ããŠã¯ããMicrosoft DefenderãŠã€ã«ã¹å¯ŸçæŽæ°ããã°ã©ã : æè¡ã¢ããã°ã¬ãŒã ãµããŒãã®ä»¥åã®ããŒãžã§ã³ããåç §ããŠãã ããã
ãã©ãããã©ãŒã ãšãšã³ãžã³ã®æŽæ°ããã°ã©ã ã¯ãæ¯ææäŸãããŸãã å®å šã«ãµããŒãããã«ã¯ãææ°ã®ãã©ãããã©ãŒã ãšãšã³ãžã³ã®æŽæ°ããã°ã©ã ãææ°ã®ç¶æ ã«ä¿ã¡ãŸãã ãµããŒãæ§é ã¯åçã§ãããææ°ã®ãã©ãããã©ãŒã ãšãšã³ãžã³ ããŒãžã§ã³ã®å¯çšæ§ã«å¿ã㊠2 ã€ã®ãã§ãŒãºã«é²åããŸãã
ã»ãã¥ãªãã£ãšéèŠãªUpdatesãµãŒãã¹ ãã§ãŒãº - ææ°ã®ãã©ãããã©ãŒã ãšãšã³ãžã³ããŒãžã§ã³ãå®è¡ããå Žåããã«ãŠã§ã¢å¯Ÿçãã©ãããã©ãŒã ã«å¯Ÿããã»ãã¥ãªãã£æŽæ°ããã°ã©ã ãšéå€§æŽæ°ããã°ã©ã ã®äž¡æ¹ãåãåãè³æ ŒããããŸãã
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) ãã§ãŒãº - æ°ãããã©ãããã©ãŒã ãšãšã³ãžã³ã®ããŒãžã§ã³ããªãªãŒã¹ãããåŸãå€ãããŒãžã§ã³ (N-2) ã®ãµããŒã㯠ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ã®ãµããŒãã®ã¿ã«åæžãããŸãã N-2 ããå€ããã©ãããã©ãŒã ãšãšã³ãžã³ã®ããŒãžã§ã³ã¯ãµããŒããããªããªããŸããã Windows 10 ãªãªãŒã¹ ããŒãžã§ã³ (Windows 10 ãªãªãŒã¹ã«å«ãŸãããã©ãããã©ãŒã ããŒãžã§ã³ãåç §) ããææ°ã®ãã©ãããã©ãŒã ããŒãžã§ã³ãžã®ã¢ããã°ã¬ãŒãã«ã€ããŠã¯ãåŒãç¶ããã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒããæäŸãããŸãã
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) ãã§ãŒãºã§ã¯ãåçšäžåŠ¥åœãªãµããŒã ã€ã³ã·ãã³ãã¯ãMicrosoft ã«ã¹ã¿ã㌠ãµãŒãã¹ & ãµããŒããš Microsoft ã®ãããŒãžã ãµããŒã ãªãã¡ãªã³ã° (Premier ãµããŒããªã©) ãéããŠæäŸãããŸãã ãµããŒã ã€ã³ã·ãã³ãã§ããããªãã¬ã€ãã³ã¹ã®ããã«éçºãžã®ãšã¹ã«ã¬ãŒã·ã§ã³ãå¿ èŠãªå Žåãã»ãã¥ãªãã£ä»¥å€ã®æŽæ°ããã°ã©ã ãå¿ èŠãªå ŽåããŸãã¯ã»ãã¥ãªãã£æŽæ°ããã°ã©ã ãå¿ èŠãªå Žåã¯ãææ°ã®ãã©ãããã©ãŒã ããŒãžã§ã³ãŸãã¯äžéæŽæ°ããã°ã©ã (*) ã«ã¢ããã°ã¬ãŒãããããã«æ±ããããŸãã
泚æ
ãŠã€ã«ã¹å¯Ÿçãã©ãããã©ãŒã æŽæ°ããã°ã©ã Microsoft Defenderæåã§å±éããå ŽåããŸãã¯ã¹ã¯ãªãããŸã㯠Microsoft 以å€ã®ç®¡ç補åã䜿çšããŠãŠã€ã«ã¹å¯Ÿçãã©ãããã©ãŒã æŽæ°ããã°ã©ã Microsoft Defenderå±éããå Žåã¯ãææ°ããŒãžã§ã³ã®ãã©ãããã©ãŒã æŽæ°ããã°ã©ã (N-2) ãã€ã³ã¹ããŒã«ãããåã«ãMicrosoft Update ã«ã¿ãã°ããããŒãžã§ã³ 4.18.2001.10ãã€ã³ã¹ããŒã«ãããŠããããšã確èªããŠãã ããã
ææ°ã®ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ãšãŠã€ã«ã¹å¯Ÿçãšã³ãžã³ã®æŽæ°ããã°ã©ã ãã€ã³ã¹ããŒã«ããã«ã¯ã次ã®ããããã®æ¹æ³ã䜿çšã§ããŸãã
- Windows Update
- Windows Update ãµãŒã㌠(WSUS)
- ãœãããŠã§ã¢æŽæ°ãã€ã³ã (SUP)
- ãã¡ã€ã« ãµãŒããŒ
- Windows ã»ãã¥ãªã㣠ã¢ããª: Windows ã»ãã¥ãªã㣠ã¢ããªã®Microsoft DefenderãŠã€ã«ã¹å¯Ÿçã«é¢ããããŒãžãåç §ããŠãã ãã
- ã³ãã³ã ã©ã€ã³ã¯ã次ã®ãšããã§ãã
"%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe" -SignatureUpdate"%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe" -SignatureUpdate \\FileServer\ShareName"%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe" -SignatureUpdate -MMPC
詳现ã«ã€ããŠã¯ããMicrosoft Defender ãŠã€ã«ã¹å¯Ÿçä¿è·æŽæ°ããã°ã©ã ã®ãœãŒã¹ã管çããããåç §ããŠãã ããã
ææ°ã®ãã©ãããã©ãŒã æŽæ°ããã°ã©ã ãååŸããã«ã¯ã次ã®ããããã®æ¹æ³ã䜿çšã§ããŸãã
Windows Update
Windows Update ãµãŒã㌠(WSUS)
ãœãããŠã§ã¢æŽæ°ãã€ã³ã (SUP)
Windows ã»ãã¥ãªã㣠ã¢ããª: Windows ã»ãã¥ãªã㣠ã¢ããªã®Microsoft DefenderãŠã€ã«ã¹å¯Ÿçã«é¢ããããŒãžãåç §ããŠãã ãã
æŽæ°åŸã«åé¡ãçºçãããšããäžå¹žãªåºæ¥äºãçºçããå Žåã¯ã以åã®ããŒãžã§ã³ãŸãã¯åä¿¡ãã¬ã€ã®ããŒãžã§ã³ã«ããŒã«ããã¯ã§ããŸãã
| ã·ããªãª | command |
|---|---|
| ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®æŽæ°ããã°ã©ã ã以åã®ããŒãžã§ã³ãŸãã¯å ã®åä¿¡ãã¬ã€ ããŒãžã§ã³ã®ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ ããŒãžã§ã³ã«ããŒã«ããã¯ãã | "%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe"-RemoveDefinitions |
| ãšã³ãžã³ã®ããŒãžã§ã³ã以åã®ããŒãžã§ã³ã«ããŒã«ããã¯ãã | "%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe"-RemoveDefinitions -Engine |
| ãã©ãããã©ãŒã ã®æŽæ°ããã°ã©ã ã以åã®ããŒãžã§ã³ã«ããŒã«ããã¯ãã | "%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe" -RevertPlatform |
ãªãã¬ãŒãã£ã³ã° ã·ã¹ãã ã«ä»å±ã®ããŒãžã§ã³ã«æŽæ°ããã°ã©ã ãããŒã«ããã¯ãã (%ProgramFiles%\Windows Defender) |
"%programdata%\Microsoft\Windows Defender\Platform\<version>\MpCmdRun.exe" -ResetPlatform |
次ã®è¡šã¯ãææ°ã®Windows 10 ãªãªãŒã¹ã«ä»å±ããŠããMicrosoft DefenderãŠã€ã«ã¹å¯Ÿçãã©ãããã©ãŒã ãšãšã³ãžã³ã®ããŒãžã§ã³ã瀺ããŠããŸãã
| Windows 10 ãªãªãŒã¹ | ãã©ãããã©ãŒã ã®ããŒãžã§ã³ | ãšã³ãžã³ã®ããŒãžã§ã³ | ãµããŒã ãã§ãŒãº |
|---|---|---|---|
| 2004 (20H1/20H2) | 4.18.1909.6 |
1.1.17000.2 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1909 (19H2) | 4.18.1902.5 |
1.1.16700.3 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1903 (19H1) | 4.18.1902.5 |
1.1.15600.4 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1809 (RS5) | 4.18.1807.5 |
1.1.15000.2 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1803 (RS4) | 4.13.17134.1 |
1.1.14600.4 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1709 (RS3) | 4.12.16299.15 |
1.1.14104.0 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1703 (RS2) | 4.11.15603.2 |
1.1.13504.0 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
| 1607 (RS1) | 4.10.14393.3683 |
1.1.12805.0 |
ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿) |
Windows 10 ãªãªãŒã¹æ å ±ã«ã€ããŠã¯ããWindows ã©ã€ããµã€ã¯ã« ãã¡ã¯ã ã·ãŒããããåç §ããŠãã ããã
泚æ
Windows Server 2016ã¯ãRS1 ãšåããã©ãããã©ãŒã ããŒãžã§ã³ãä»å±ããŠãããåããµããŒã ãã§ãŒãºã«è©²åœããŸã:ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿)
Windows Server 2019 ã«ã¯ãRS5 ãšåããã©ãããã©ãŒã ããŒãžã§ã³ãä»å±ããŠãããåããµããŒã ãã§ãŒãºã«è©²åœããŸã:ãã¯ãã«ã« ã¢ããã°ã¬ãŒã ãµããŒã (ã®ã¿)
ä¿è·ã®ã®ã£ãããåé¿ããã«ã¯ãææ°ã®ãŠã€ã«ã¹å¯Ÿçãšãã«ãŠã§ã¢å¯Ÿçã®æŽæ°ããã°ã©ã ã䜿çšã㊠OS ã®ã€ã³ã¹ããŒã« ã€ã¡ãŒãžãææ°ã®ç¶æ ã«ä¿ã¡ãŸãã Updatesã¯æ¬¡ã®ç®çã§äœ¿çšã§ããŸãã
- Windows 10ãš 11 (EnterpriseãProãHome ã®åãšãã£ã·ã§ã³)
- Windows Server 2012 R2 以é
- Azure Stack HCI OS ããŒãžã§ã³ 23H2 以é
- WIM ãã¡ã€ã«ãš VHD(x) ãã¡ã€ã«
Updatesã¯ãx86ãx64ãããã³ Arm64 Windows ã¢ãŒããã¯ãã£åãã«ãªãªãŒã¹ãããŠããŸãã
詳现ã«ã€ããŠã¯ããWindows ãªãã¬ãŒãã£ã³ã° ã·ã¹ãã ã®ã€ã³ã¹ããŒã« ã€ã¡ãŒãžçšã® Microsoft Defender æŽæ°ããã°ã©ã ããåç §ããŠãã ããã
æ°ããããã±ãŒãž ããŒãžã§ã³ããªãªãŒã¹ããããšã以åã® 2 ã€ã®ããŒãžã§ã³ã®ãµããŒãã¯ãã¯ãã«ã« ãµããŒãã®ã¿ã«çž®å°ãããŸãã 以åã®ããŒãžã§ã³ã®äžèЧã衚瀺ããã«ã¯ãã 以åã® DISM æŽæ°ããã°ã©ã ããåç §ããŠãã ããã
- Defender ããŒãžã§ã³:
1.431.97.0 - ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®ããŒãžã§ã³:
1.431.97.0 - ãã©ãããã©ãŒã ã®ããŒãžã§ã³:
4.18.25050.5 - ãšã³ãžã³ã®ããŒãžã§ã³:
1.25050.6
- ãªã
- ãªã
- Defender ããŒãžã§ã³:
1.431.54.0 - ã»ãã¥ãªã㣠ã€ã³ããªãžã§ã³ã¹ã®ããŒãžã§ã³:
1.431.54.0 - ãã©ãããã©ãŒã ã®ããŒãžã§ã³:
4.18.25050.5 - ãšã³ãžã³ã®ããŒãžã§ã³:
1.25050.2
- ãªã
- ãªã
- Defender ããŒãžã§ã³:
1.429.122.0 - 眲åããŒãžã§ã³:
1.429.122.0 - ãã©ãããã©ãŒã ã®ããŒãžã§ã³:
4.18.25040.2 - ãšã³ãžã³ã®ããŒãžã§ã³:
1.25040.1
- ãªã
- ãªã
| èšäº | 説æ |
|---|---|
| Windows ãªãã¬ãŒãã£ã³ã° ã·ã¹ãã ã®ã€ã³ã¹ããŒã« ã€ã¡ãŒãžçšã® Microsoft Defender æŽæ°ããã°ã©ã | OS ã€ã³ã¹ããŒã« ã€ã¡ãŒãž (WIM ãã¡ã€ã«ãš VHD ãã¡ã€ã«) ã®ãã«ãŠã§ã¢å¯ŸçæŽæ°ããã°ã©ã ããã±ãŒãžã確èªããŸãã Windows 10 (EnterpriseãProãHome ãšãã£ã·ã§ã³)ãWindows Server 2019ãWindows Server 2022ãWindows Server 2016ãããã³ã®Microsoft DefenderãŠã€ã«ã¹å¯Ÿçã®æŽæ°ããã°ã©ã ãååŸããR2 ã€ã³ã¹ããŒã« ã€ã¡ãŒãžãWindows Server 2012ããŸãã |
| ä¿è·æŽæ°ããã°ã©ã ãããŠã³ããŒãããŠé©çšããæ¹æ³ã管çãã | ä¿è·æŽæ°ããã°ã©ã ã¯ãå€ãã®ãœãŒã¹ãä»ããŠé ä¿¡ãããŸãã |
| ä¿è·æŽæ°ããã°ã©ã ãããŠã³ããŒãããŠé©çšããã¿ã€ãã³ã°ã管çãã | ä¿è·æŽæ°ããã°ã©ã ãããŠã³ããŒãããã¿ã€ãã³ã°ãã¹ã±ãžã¥ãŒã«ã§ããŸãã |
| ææ°ã§ãªããšã³ããã€ã³ãçšã®æŽæ°ããã°ã©ã ã管çãã | ãšã³ããã€ã³ããæŽæ°ãŸãã¯ã¹ã±ãžã¥ãŒã«ãããã¹ãã£ã³ãèŠéããå Žåã¯ããŠãŒã¶ãŒã次åãµã€ã³ã€ã³ãããšãã«ã匷å¶çã«æŽæ°ãŸãã¯ã¹ãã£ã³ããããšãã§ããŸãã |
| ã€ãã³ãããŒã¹ã®åŒ·å¶æŽæ°ããã°ã©ã ã管çãã | ä¿è·æŽæ°ããã°ã©ã ã¯ãèµ·åæãŸãã¯ç¹å®ã®ã¯ã©ãŠãé ä¿¡ä¿è·ã€ãã³ãã®åŸã«ããŠã³ããŒããããããã«èšå®ã§ããŸãã |
| ã¢ãã€ã« ããã€ã¹ãšä»®æ³ãã·ã³ (VM) ã®æŽæ°ããã°ã©ã ã管çãã | ã¢ãã€ã« ããã€ã¹ãä»®æ³ãã·ã³ã«ç¹ã«åœ¹ç«ã€ããããªé»æºã§æŽæ°ãè¡ãå¿ èŠããããã©ãããªã©ã®èšå®ãæå®ã§ããŸãã |
| EDR ã»ã³ãµãŒçšã® Microsoft Defender for Endpoint æŽæ°ããã°ã©ã | 2021 幎ã«ãªãªãŒã¹ãããæ°ããMicrosoft Defender for Endpointçµ±åãœãªã¥ãŒã·ã§ã³ ããã±ãŒãžã«å«ãŸãã EDR ã»ã³ãµãŒ (MsSense.exe) ãæŽæ°ã§ããŸãã |
ãã³ã
ä»ã®ãã©ãããã©ãŒã ã®ãŠã€ã«ã¹å¯Ÿçé¢é£æ å ±ãæ¢ããŠããå Žåã¯ã次ãåç §ããŠãã ããã
- macOS äžã§ Microsoft Defender for Endpoint çšã®åºæ¬èšå®ãèšå®ãã
- Mac çš Microsoft Defender for Endpoint
- Intune ã® Microsoft Defender ãŠã€ã«ã¹å¯Ÿçã® macOS ãŠã€ã«ã¹å¯Ÿçããªã·ãŒèšå®
- Linux äžã§ Microsoft Defender for Endpoint çšã®åºæ¬èšå®ãèšå®ãã
- Linux çš Microsoft Defender for Endpoint
- Android æ©èœçš Defender for Endpoint ãæ§æãã
- iOS æ©èœçš Microsoft Defender for Endpoint ãæ§æãã
ãã³ã
ããã«å€ãã®æ å ±ãåŸãã«ã¯ã Tech Community å ã® Microsoft Security ã³ãã¥ãã㣠(Microsoft Defender for Endpoint Tech Community) ã«ãåå ãã ããã