Microsoft Defender for Endpoint
Architecture and deployment

Deploy Manage Report Microsoft Defender Antivirus

In brief

The Microsoft Defender Antivirus reporting documentation now points to an updated Security auditing reference URL.

What Defender admins need to know

No administrator action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

For reporting, Windows events comprise several security event sources, including Security Account Manager (SAM) events (enhanced for Windows 10). Also see Security auditingSecurity auditing and Windows Defender events.

See also