Windows Defender can be disabled through Settings, but the method depends on whether you're running Windows Home or Pro
To temporarily disable Windows Defender's real-time protection on Windows 10 or 11, open Settings, navigate to Privacy & Security (or Update & Security on older builds), select Windows Security, then Virus & threat protection. Click "Manage settings" under Virus & threat protection settings, and toggle off "Real-time protection." On Windows Home edition, this toggle will stay off until you manually turn it back on. On Windows Pro and higher, Group Policy offers a second method: press Windows key + R, type `gpedit.msc`, navigate to Computer Configuration > Administrative Templates > Windows Components > Microsoft Defender Antivirus, and set "Turn off Microsoft Defender Antivirus" to Enabled.
The Settings method is simpler for most users and works on all editions. The Group Policy method is more permanent if you want the setting to survive a restart, but it requires Pro edition or higher. Both methods disable only real-time scanning — scheduled scans and other security features remain active unless you disable them separately.
Key Takeaways
- Real-time protection can be toggled off in Settings > Privacy & Security > Windows Security > Virus & threat protection on any Windows edition.
- On Windows Home, the toggle reverts to on after a restart or when Windows Update runs, so the disable is temporary by design.
- On Windows Pro and higher, Group Policy can disable Defender more persistently, but this requires navigating the Local Group Policy Editor.
- Disabling real-time protection does not stop scheduled scans or quarantine existing threats — only active monitoring stops.
- Windows will show a notification that virus protection is off, and some programs may refuse to run without it enabled.
Why you might disable Windows Defender temporarily
Real-time protection can interfere with software installation, file transfers, or system performance during resource-heavy tasks. Some older programs flag false positives, or you may want to test a file without Defender quarantining it. Disabling it for a few minutes while you complete a specific task is a common troubleshooting step.
Keep in mind that disabling protection leaves your system vulnerable while it is off. Malware can execute, downloads are not scanned, and any threat already present can spread. The longer Defender stays disabled, the higher the risk. Re-enable it as soon as your task is complete.
Using Settings to disable real-time protection (all Windows editions)
Open Settings by pressing Windows key + I. On Windows 11, click Privacy & Security in the left sidebar. On Windows 10, click Update & Security. In either case, find and click Windows Security, then click Virus & threat protection.
Under "Virus & threat protection settings," click "Manage settings." You will see a toggle labeled "Real-time protection." Click it to turn it off. Windows will ask for confirmation; click Yes. The toggle will turn gray, and real-time scanning stops immediately.
On Windows Home edition, this setting reverts to on automatically after a restart or when Windows Update runs. On Pro and higher, it stays off until you manually turn it back on, though Windows will periodically remind you that protection is disabled.
Using Group Policy to disable Defender (Windows Pro, Enterprise, Education only)
This method works only on Windows Pro, Enterprise, or Education editions. Home edition does not include the Local Group Policy Editor. Press Windows key + R to open the Run dialog, type `gpedit.msc`, and press Enter. If prompted by User Account Control, click Yes.
In the Group Policy Editor window, navigate to Computer Configuration > Administrative Templates > Windows Components > Microsoft Defender Antivirus. In the right pane, double-click "Turn off Microsoft Defender Antivirus." Select Enabled and click OK. Close the Group Policy Editor.
This setting persists across restarts and is more difficult to accidentally revert than the Settings toggle. However, it requires administrative access and knowledge of Group Policy. If you are unsure whether you have Pro edition, right-click This PC or My Computer, select Properties, and look for the edition name under Windows specifications.
What stays active when you disable real-time protection
Disabling real-time protection stops only active, continuous scanning. Scheduled scans still run at their set times unless you disable them separately. Any malware already quarantined remains in quarantine. Firewall rules stay in place. Windows Update security patches continue to install.
If you want to disable scheduled scans as well, return to Windows Security > Virus & threat protection > Manage settings and toggle off "Scheduled scanning." To disable the firewall, go to Settings > Privacy & Security > Windows Security > Firewall & network protection and toggle off the firewall for each network type separately.
Re-enabling Windows Defender
To turn real-time protection back on, return to Settings > Privacy & Security > Windows Security > Virus & threat protection > Manage settings and toggle "Real-time protection" back on. On Windows Home, it may re-enable automatically after a restart or Windows Update.
If you used Group Policy to disable Defender, open Group Policy Editor again, navigate to the same location, double-click "Turn off Microsoft Defender Antivirus," select Not Configured, and click OK. The setting takes effect immediately.
After re-enabling, run a quick scan to check for any threats that may have been missed while protection was off. Open Windows Security, click Virus & threat protection, and under "Current threats," click "Scan options," select Quick scan, and click Scan now.
Alternatives if you want to use a different antivirus
If you are disabling Defender because you want to install a third-party antivirus, most commercial antivirus programs will disable Defender automatically during installation. You do not need to disable it first. Windows will detect the third-party program and turn off Defender's real-time protection to avoid conflicts.
If Defender does not disable automatically, you can disable it manually before installing the new antivirus, then install the third-party program. Once the new antivirus is running, Defender will remain off as long as the third-party program is active and set as your default antivirus.
Frequently Asked Questions
Will disabling Windows Defender affect Windows Update?
No. Windows Update continues to run and install security patches regardless of whether Defender is on or off. However, on Windows Home edition, Windows Update may automatically re-enable Defender when it runs, which will turn your manual disable off.
Can I disable Windows Defender permanently?
On Windows Home, no — it re-enables after restart or Windows Update. On Windows Pro and higher, Group Policy can disable it more persistently, but Microsoft does not recommend running Windows without antivirus protection. If you want permanent protection from a different antivirus, install that program instead and let it replace Defender.
What happens if malware runs while Defender is off?
It can execute without being stopped or quarantined. Once you re-enable Defender and run a scan, it may detect and remove the malware, but the threat had time to spread or cause damage. This is why disabling protection should be brief and only when necessary.
Does disabling real-time protection stop Windows from showing security notifications?
No. Windows will still display a notification in the system tray that virus protection is off, and Settings will show a red warning. This is intentional — it reminds you that your system is unprotected.
Can I disable Defender on Windows 11 Home the same way as Windows 10?
Yes. The Settings path is slightly different (Privacy & Security instead of Update & Security), but the toggle works the same way. On Windows 11 Home, it still reverts to on after restart or Windows Update.