A crucial security feature in Windows Defender comes disabled by default: Ransomware Protection. Thatâs surprising, since ransomware is a serious threat that locks down your device and blocks you from accessing your data until you pay your attacker. Itâs even more surprising when you consider that Ransomware Protection was added way back in the October 2017 Windows 10 update.
The best possible explanation to why Ransomware Protection is disabled by default, as pointed out by gHacks, is that the feature may be prone to false positives. Thatâs a valid concern, but we sympathize with those who are eager to protect their data given how debilitating ransomware attacks can be.
Weâve covered general ransomware prevention tips before, but Windows 10âs built-in options add an extra layer of protection to your PC. Luckily, not only does Windows Defender include Ransomware Protection, users are able to extendâor limitâits coverage to suit their needs. Hereâs how:

- Open the Start Menu, then click the Settings icon.
- In the Settings menu, go to Update & Security > Windows Security > Virus & Threat Protection.
- Scroll down to Ransomware Protection and click âManage Ransomware Protection.â
- In the next menu, enable âControlled Folder Access.â
- Controlled Folder Access only protects certain folders by default: Documents, Pictures, Videos, Music, Desktop, Favorites. You can extend the Ransomware Protection to other files and folders by clicking âAdd a protected folderâ in that same window.
- Navigate to the folder you wish to add to the ransomware protection. Repeat for each folder you want to have protected.
Now that youâve set up Controlled Folder Access, Windows Defender will monitor which programs are accessing the protected folders and the files stored within them. Itâll then block blocks suspicious programs from trying to gain access. While this gives you some peace of mind, the problem is that some âsuspiciousâ programs are not actually malicious. To avoid false positives, you can add a program to the Controlled Folder Accessâ whitelist.
- Open the Start Menu and click the settings icon.
- Go to Update & Security > Windows Security > Virus & Threat Protection > Manage Ransomware Protection.
- Scroll down and click âAllow an app through controlled folder access,â then find and add the desired program to the list. Youâll have to repeat this process for each app you want to grant access to.
- You can also click âBlock historyâ to view a list of programs that Windows Defender has prevented from accessing your protected files. If you donât recognize a listed program or arenât sure why one would be trying to access your files, uninstall it.
Even with fine-tuned ransomware protection from Windows Defender, you should also make sure youâre regularly backing up your files (so you donât get locked out of anything important, if ransomware strikes). You can use an external hard drive, for example, or you can set up data recovery via OneDrive, which can be enabled in the Controlled Folder Access settingsâon the same âRansomware Protectionâ screen weâve previously talked about. Youâll need to set up OneDrive if you havenât already, and you only get 5GB of free space, but youâll be able to recover your critical data in the event of a ransomware attack.
Source: https://lifehacker.com/why-you-should-use-windows-defenders-ransomware-prevent-1837311176

