1.11 WN22-00-000110

Information

Windows Server 2022 must use an antivirus program.

GROUP ID: V-254248
RULE ID: SV-254248r991589

Malicious software can establish a base on individual desktops and servers. Employing an automated mechanism to detect this type of software will aid in elimination of the software from the operating system.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

If no antivirus software is in use, install Microsoft Defender or third-party antivirus.

Open 'PowerShell'.

Enter

'Install-WindowsFeature -Name Windows-Defender'

For third-party antivirus, install per antivirus instructions and disable Windows Defender.

Open 'PowerShell'.

Enter

'Uninstall-WindowsFeature -Name Windows-Defender'

See Also

https://workbench.cisecurity.org/benchmarks/22357

Item Details

Category: SYSTEM AND INFORMATION INTEGRITY

References: 800-53|SI-3

Plugin: Windows

Control ID: b125eb96f9127fd9ebf9b796bfbcc6fa5d72e41ea5e71cc9f3d7d73895aa9e97