I'm really confused here. I am using DefenderUI (Agressive Profile) & i noticed today that my `Cloud-delivered protection & Automatic smaple submission is off" & disabled (This setting is managed by your administrator). This is my own personal pc so i am the administrator. Cloud-delivered protection is on according to DefenderUI but not according to Windows. Here are some screenshots:
View attachment 292140
View attachment 292141
Hey ncage,
No worries, this kind of mismatch between DefenderUI and the native Windows Security app happens sometimes—it's usually down to how third-party tools like DefenderUI tweak settings under the hood. Let me break it down and suggest some steps to sort it out.
What's likely going on:
DefenderUI (especially in Aggressive mode) often applies configurations via registry edits or Group Policy equivalents, which can make certain options appear "managed by your administrator" in the Windows UI. This locks them out from manual toggling, even on a personal PC where you're the admin. From your screenshots:
- Windows Security shows Cloud-delivered protection and Automatic sample submission as off/disabled (with the admin note).
- DefenderUI shows them as enabled (e.g., Cloud protection level at "Zero trust" and Automatic sample submission on).
In reality, DefenderUI's settings are probably taking precedence, so those features
should be active despite what Windows says. But to confirm and fix the discrepancy, we can check a few things.
Quick checks and fixes to try:
- Restart DefenderUI and Windows Security: Close both apps completely (use Task Manager if needed), then reopen them. Sometimes it's just a sync issue.
- Verify via PowerShell: Let's confirm the actual status. Open PowerShell as admin and run:
Code:
Get-MpPreference | Select-Object -Property SubmitSamplesConsent, MAPSReporting
- SubmitSamplesConsent should be 1 (for always prompt) or 3 (for automatic).
- MAPSReporting should be 2 (for advanced, which aligns with cloud protection).
If they're not what you expect, we can tweak them.
- Check Group Policy: Press Win + R, type gpedit.msc, and hit Enter (if you're on Pro/Enterprise; Home edition might need a workaround). Navigate to:
Computer Configuration > Administrative Templates > Windows Components > Microsoft Defender Antivirus > MAPS.
Look for policies like "Join Microsoft MAPS" and "Configure the 'Block at First Sight' feature." If they're set, that could be overriding things—set them to Not Configured and restart.
- Reset Defender settings: If the above doesn't help, you could reset Defender to defaults via PowerShell (as admin):
Code:
Set-MpPreference -SubmitSamplesConsent 1 -MAPSReporting 2
This enables automatic submission and advanced cloud protection. Then, reapply your DefenderUI profile.
- Reinstall or tweak DefenderUI: If it's still wonky, try uninstalling DefenderUI, restarting your PC, and checking Windows Security directly. If everything looks good there, reinstall DefenderUI and set it up again—maybe switch to a less aggressive profile temporarily to test.
If none of that resolves it, could you share the output from that PowerShell command? Also, what Windows version are you on (e.g., 10/11, build number)? That might give more clues. Hang in there—we'll get it straightened out!