Commands › Exchange Online

Remove-MalwareFilterPolicy

Exchange Online ExchangeOnlineManagement Remove-*

Remove malware filter policies from your organization. When a policy is removed and there are rules associated with it, the rules are not removed when the policy is removed. This is by design. If you want to remove the associated rules, you need to do this separately via the Remove-MalwareFilterRule cmdlet.

Quick start script

# Remove-MalwareFilterPolicy — quick start (serv365.ai)
# 1. Connect (app-only shown; interactive: omit the certificate parameters)
Connect-ExchangeOnline -CertificateThumbprint $thumb -AppId $appId -Organization $org

# 2. Capture the current state first — you cannot roll back what you never recorded
$before = Get-MalwareFilterPolicy
$before | Format-List

# 3. Make the change (dry run first)
Remove-MalwareFilterPolicy -Identity <MalwareFilterPolicyIdParameter> -WhatIf
Remove-MalwareFilterPolicy -Identity <MalwareFilterPolicyIdParameter>

# 4. Verify and diff
$after = Get-MalwareFilterPolicy
Compare-Object ($before | Out-String) ($after | Out-String)

Syntax

Remove-MalwareFilterPolicy [-Identity] <MalwareFilterPolicyIdParameter>
 [-Confirm]
 [-DomainController <Fqdn>]
 [-Force]
 [-WhatIf]
 [<CommonParameters>]

Parameters (5)

ParameterTypeRequiredWhat it controls
-Identity MalwareFilterPolicyIdParameter yes The Identity parameter specifies the malware filter policy you want to remove. You can use any value that uniquely identifies the policy. For example, you can use the name, GUID or distinguished name (DN) of the...
-Confirm SwitchParameter The Confirm switch specifies whether to show or hide the confirmation prompt. How this switch affects the cmdlet depends on whether the cmdlet requires confirmation before proceeding.
-DomainController Fqdn This parameter is available only in on-premises Exchange.
-Force SwitchParameter This parameter is available only in on-premises Exchange.
-WhatIf SwitchParameter The WhatIf switch shows what the command does without making any changes. You don't need to specify a value with this switch.

Reference facts derived from Microsoft documentation, © Microsoft, licensed CC BY 4.0; restructured with original guidance by serv365.ai.