Creating policy exclusions needed to prevent scan of Windows Defender processes
Add an Event Reporting & Sensor Operations Exclusion to the Sensor tab in relevant policies:
Exclusion Type: All reporting and sensor operations
Process Type: Process
Process Attribute: Path
Paths:
c:\programdata\microsoft\windows defender\platform\*\msmpeng.exe
c:\program files\windows defender advanced threat protection\mssense.exe
Inheritance: (OPTIONAL)The above is an example of the primary Microsoft Defender processes; however, the rule might need to be modified further to adjust for new binaries and/or environmental variables.