Windows Defender Antivirus becomes the first complete antivirus solution to run in a sandbox to provide you better security
Mady Marinescu, from the Windows Defender Engineering team, in an official blog post announced that the Windows Defender Antivirus can now run in a sandbox to provide you extra security layer. With this development, its the first Antivirus solution which can run in a sandbox.
To know more about this capability and to learn how to enable this feature in Windows 10, continue reading this post.
Why to run Windows Defender in a sandbox?
Running the
According to Microsoft:
Putting Windows Defender Antivirus in a restrictive process execution environment is a direct result of feedback that we received from the security industry and the research community. It was a complex undertaking: we had to carefully study the implications of such an enhancement on performance and functionality. More importantly, we had to identify high-risk areas and make sure that sandboxing did not adversely affect the level of security we have been providing.
How to enable Windows Defender to run in a sandbox?
Microsoft is now in the process to enable this capability of Windows Defender Antivirus to the Windows Insiders. If you are an insider, you can now start experiencing the same. Once the feature is enabled, you can now see a content process MsMpEngCP.exe running alongside with the antimalware service MsMpEng.exe.
If you are using Windows 10 version 1703 or later, you can also enable this feature by changing a machine-wide environment variable and then restarting the system. To enable the Windows Defender Antivirus to run inside a secure Sandbox, follow the below mentioned steps:
- Go to
Start and typecmd . - Right-click on
Command Prompt and from the context menu, selectRun as administrator . Make sure that, you have administrative privileges on that system. - Now, inside the command prompt, type the following command and hit enter:
setx /M MP_FORCE_USE_SANDBOX 1
- You will now see a message:
SUCCESS: Specified value was saved. - Restart your system for the changes to take effect.

Why not reach little more and connect with me directly on Twitter, Facebook and LinkedIn. I would love to hear your thoughts and opinions.