Windows Defender False Positive Alerts and Printer Killing
-
MS Defender version 1.353.1874.0 has been detecting false a positive (PowEmotet.SC) in Office documents and C:\Windows\splwow64.exe (killing printer functionality) on Windows 10.
(I'm not sure about 11).
Reading: https://www.bleepingcomputer.com/news/microsoft/microsoft-defender-scares-admins-with-emotet-false-positives/Fortunately, the issue is resolved in 1.353.1888.0
At the time of posting this, the faulty version is still published on: https://www.microsoft.com/en-us/wdsi/defenderupdates
A resync of WSUS, forcing affected clients to update Defender, and then rebooting has resolved the issues that I've seen.