# Why is MsMpEng.exe still scanning excluded directories

Occasional Contributor

THe MsMpEng.exe process is very active in our environment.

Checking with Process Monitor filtered on MsMpEng.exe i can see it is very busy scanning my ISO directory, but i have excluded that directory in real-time scanning in Defender long ago.

Why is it still scanning that directory, and i see many others i excluded it is also scanning?

Will Azure Intune rules overwrite local configurations? if so wouldn't it gray them out? I am able to set exclusions.