Additional Microsoft Defender tools and services that provide security across various platforms and environments
Win32/Cerdigent.A!dha is a malware detection. If Microsoft Defender reports it and shows as only partially removed or it keeps coming back, use the following steps to clean the PC more thoroughly:
- Run the Microsoft Malicious Software Removal Tool (MSRT)
- Press Windows key + R to open the Run dialog.
- Type:
and select OK.%windir%\system32\mrt.exe - If prompted to allow the program to make changes, select Yes.
- In MSRT, choose a Full scan and follow the prompts to scan and clean the PC.
- Restart and update Windows
- After MSRT finishes and removes what it can, restart the PC.
- Manually install the latest Windows updates to ensure all security fixes and updated malware signatures are applied.
- If the threat is still detected or keeps returning
- Use Microsoft Defender Offline to catch hidden or persistent components:
- Go to Start > Settings > Update & Security > Windows Security > Virus & threat protection.
- Under Current threats, select Scan options.
- Select Windows Defender Offline scan and then Scan now.
- The PC will restart and run an offline scan before Windows loads.
- Use Microsoft Defender Offline to catch hidden or persistent components:
- Ensure ongoing protection
- Confirm Microsoft Defender Antivirus is enabled and real-time protection is on.
- Make sure Tamper Protection is turned on so malware cannot easily disable security settings.
If Defender reports the threat as “partially removed” even after these steps, repeat the MSRT full scan and Defender Offline scan, then check the advanced troubleshooting guidance for detecting and removing malware.
References: