Virus Alerts
Every Windows Defender detection across your managed fleet, in one queue.
Overview
The Virus Alerts page collects malware and threat detections reported by the RMM agent from every managed device. Each detection includes the threat name, severity, and the affected file path(s), so you can judge urgency at a glance.
What Gets Reported
- Windows Defender detections (trojans, PUPs, ransomware behavior, and other threats), titled with the actual threat name.
- Defender health issues surfaced through your RMM policies (real-time protection off, definitions out of date, and similar), which appear in the asset's alerts.
Taking Action
Open the affected asset's detail page to manage the threat interactively - quarantine, remove, or allow - without leaving your desk. Actions run through the agent on the machine.
Alert Lifecycle
- Acknowledge an alert to show your team it's being handled.
- Resolve it when the threat is dealt with.
- Alert history is never deleted - acknowledged and resolved alerts remain visible so you keep the full security story for every device and customer.
Automate it: Pair virus alerts with Automated Remediation to run a cleanup script, open a ticket, or email your team the moment a detection arrives.