SCCM Issue: MpThreatEnumerate failed with 0x80508023. Error message: The program could not find the malware and other potentially unwanted software on this device.

Daniel Mersin 15 Reputation points
2025-11-10T10:25:45.9133333+00:00

The EPCtrlMgr.log on the SCCM server reports "MpThreatEnumerate failed with 0x80508023. Error message: The program could not find the malware and other potentially unwanted software on this device." every 900 sec. A bug in the MS malware Engine?

Microsoft System Center | Other
{count} votes

2 answers

Sort by: Most helpful
  1. Christian Handschuher 5 Reputation points Microsoft Employee
    2025-12-01T08:15:45.66+00:00

    The issue you are facing was introduced by the Defender Engine update 1.1.25100.9002, and this is a known issue coming from the Defender product update. MCM relies on the local Windows Defender to query information about definition installation on the MCM server where the Endpoint Protection role is installed and the new engine update has blocked this causing the error you are seeing. 

    The issue is mostly cosmetic, not impacting the actual patching of definition updates on computers or servers. 

    The issue was already raised with the Defender team and it should be resolved with the Defender Engine update of December that should be available in the first part of December (around the 9th of December).

    1 person found this answer helpful.
    0 comments No comments

  2. Q&A Assist
    2025-11-10T10:25:57.2466667+00:00
    AI generated content. This question contains an answer created with AI from Q&A Assist. Learn more

    The error code 0x80508023 indicates that the threat might no longer be present on the media, or malware might be preventing the scanning process from completing successfully. In this case, it suggests that the program could not find the malware and other potentially unwanted software on the device.

    To resolve this issue, you can try the following steps:

    1. Run the Microsoft Safety Scanner to check for any threats that may be interfering with the scanning process.
    2. Ensure that your security software is updated to the latest definitions.
    3. Perform a full system scan to ensure that all potential threats are detected and addressed.
    4. Restart the device and try the scan again.

    If the issue persists, it may be helpful to check the logs for any additional errors or warnings that could provide more context on the failure.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.