nerdexam
Microsoft

MD-102 · Question #158

You have computers that run Windows 10 and are managed by using Microsoft Intune. Users store their files in a folder named D:\Folder1. You need to ensure that only a trusted list of applications is…

The correct answer is B. Microsoft Defender Exploit Guard. The four components of Windows Defender Exploit Guard are: Controlled folder access: Protects sensitive data from ransomware by blocking untrusted processes from accessing your protected folders Attack Surface Reduction (ASR) Exploit protection Network protection…

Submitted by rania.sa· Apr 18, 2026Protect devices

Question

You have computers that run Windows 10 and are managed by using Microsoft Intune. Users store their files in a folder named D:\Folder1. You need to ensure that only a trusted list of applications is granted write access to D:\Folder1. What should you configure in the device configuration profile?

Options

  • AMicrosoft Defender SmartScreen
  • BMicrosoft Defender Exploit Guard
  • CMicrosoft Defender Application Guard
  • DMicrosoft Defender Application Control

How the community answered

(24 responses)
  • B
    79% (19)
  • C
    13% (3)
  • D
    8% (2)

Explanation

The four components of Windows Defender Exploit Guard are: * Controlled folder access: Protects sensitive data from ransomware by blocking untrusted processes from accessing your protected folders * Attack Surface Reduction (ASR) * Exploit protection * Network protection attack-surface-against-next-generation-malware/

Topics

#Microsoft Defender Exploit Guard#Attack Surface Reduction rules#Folder access control#Intune security

Community Discussion

No community discussion yet for this question.

Full MD-102 Practice