<string id="CheckForSignaturesBeforeRunningScan">Check for New Signatures Before Scheduled Scans</string>
<string id="CheckForSignaturesBeforeRunningScan_Explain">Checks for new signatures before running scheduled scans.
If you enable this policy setting, the scheduled scan checks for new signatures before it scans the computer.
If you disable or do not configure this policy setting, the scheduled scan begins without downloading new signatures.</string>
<string id="DisableAntiSpyware">Turn off Windows Defender</string>
<string id="DisableAntiSpyware_Explain">Turns off Windows Defender Real-Time Protection, and no more scans are scheduled.
If you enable this policy setting, Windows Defender does not run, and computers will not be scanned for spyware or other potentially unwanted software.
If you disable or do not configure this policy setting, by default Windows Defender runs and computers are scanned for spyware and other potentially unwanted software.</string>
<string id="EnableLoggingForKnownGood">Enable Logging Known Good Detections</string>
<string id="EnableLoggingForKnownGood_Explain">Enables logging detection data during Real-time Protection when Windows Defender detects known good files. Logging detections provides you with detailed information about the programs that run on the computers you monitor.
If you enable this policy setting, known good files are logged.
If you disable or do not configure this policy setting, by default known good files are not logged.
Enabling this policy setting can result in a greater number of events in the log.</string>
<string id="EnableLoggingForUnknown_Explain">Enables logging detections during Real-time Protection when Windows Defender detects unknown files. Logging detections provides you with detailed information about the programs that run on the computers you monitor.
If you enable or do not configure this policy setting, by default unknown files are logged.
If you disable this policy setting, unknown files are not logged.
Enabling this policy setting can result in a greater number of events in the log.</string>
<string id="DisableUnknownRTP">Turn off Real-Time Protection Prompts for Unknown Detection</string>
<string id="DisableUnknownRTP_Explain">Turns off Real-Time Protection (RTP) prompts for unknown detection.
If you enable this policy setting, Windows Defender does not prompt users to allow or block unknown activity.
If you disable or do not configure this policy setting, by default Windows Defender prompts users to allow or block unknown activity on the computer.</string>
<string id="ForceFullUpdate_Explain">Downloads the full signature set, rather than only the signatures that have been updated since the last signature download. Downloading the full signature set can help troubleshoot problems with signature installations, but because the file is large, it can take longer to download.
If you enable this policy setting, the full signatures set is downloaded.
If you disable or do not configure this policy setting, by default only updated signatures are downloaded.</string>
<string id="SpyNetReporting">Configure Microsoft SpyNet Reporting</string>
<string id="SpyNetReporting_Explain">Adjusts membership in Microsoft SpyNet.
Microsoft SpyNet is the online community that helps you choose how to respond to potential spyware threats. The community also helps stop the spread of new spyware infections.
Here's how it works. When Windows Defender detects software or changes by software not yet classified for risks, you see how other members responded to the alert. In turn, the action you apply help other members choose how to respond. Your actions also help Microsoft choose which software to investigate for potential threats. You can choose to send basic or additional information about detected software. Additional information helps improve how Windows Defender works. It can include, for example, the location of detected items on your computer if harmful software has been removed. Windows Defender will automatically collect and send the information.
If you enable this policy setting and choose "No Membership" from the drop-down list, SpyNet membership will be disabled. At this setting, no information will be sent to Microsoft. You will not be alerted if Windows Defender detects unclassified software running on your computer. Local users will not be able to change their SpyNet membership.
If you enable this policy setting and choose "Basic" from the drop-down list, SpyNet membership is set to "Basic". At this setting, basic information about the detected items and the actions you apply will be shared with the online community. You will not be alerted if Windows Defender detects software that has not yet been classified for risks.
If you enable this policy setting and choose "Advanced" from the drop-down list, SpyNet membership is set to "Advanced". At this setting, you send your choices and additional information about detected items. You are alerted so you can take action when Windows Defender detects changes to your computer by unclassified software. Your decisions to allow or block changes help Microsoft create new definitions for Windows Defender and better detect harmful software. In some instances, personal information may be sent but no information is used to contact you.
If you disable or do not configure this policy setting, by default SpyNet membership is disabled. At this setting, no information will be sent to Microsoft. You will not be alerted if Windows Defender detects unclassified software running on your computer. Local users will still be able to change their SpyNet membership.</string>
<string id="CheckAlternateDownloadLocation">Turn on definition updates through both WSUS and Windows Update</string>
<string id="CheckAlternateDownloadLocation_Explain">This policy setting allows you to configure Windows Defender to check and install definition updates from Windows Update when a locally managed Windows Server Update Services (WSUS) server is not available.
Windows Defender checks for definition updates using the Automatic Updates client. The Automatic Updates client can be configured to check the public Windows Update Web site or a locally managed WSUS server. When a computer is not able to connect to an internal WSUS server, such as when a portable computer is roaming outside of the corporate network, Windows Defender can be configured to also check Windows Update to ensure definition updates are delivered to these roaming machines.
If you enable or do not configure this policy setting, by default Windows Defender will check for definition updates from Windows Update, if connections to a locally managed WSUS server fail.
If you disable this policy setting, Windows Defender will check for definition updates only on a locally managed WSUS server, if the Automatic Updates client is so configured.</string>