If Defender now shows Status: Removed and a new scan reports zero threats, that indicates the detected item was removed. In Protection history, Threat blocked means Defender blocked and removed the threat, and Threat quarantined means it was isolated and not currently a risk until removed. Since the detection was in the browser cache, clearing the cache was also an appropriate step.
To increase confidence that nothing persistent remains:
- Open Windows Security > Virus & threat protection > Scan options.
- Run a Full scan.
- Then run Microsoft Defender Antivirus (offline scan). This restarts the PC and scans outside Windows, which helps detect malware that hides while Windows is running. Save open files first, because the device will restart.
- After Windows starts again, open Windows Security and check Protection history for the offline scan results.
If the same malware is detected again after a restart, that can indicate a hidden component is reinstalling it. In that case, Microsoft recommends using Microsoft Defender Offline specifically for recurring malware.
If Defender reports Remediation incomplete or partially removed, follow the additional cleanup steps shown there. One supported next step is to run the Malicious Software Removal Tool:
- Press Windows key + R.
- Type %windir%\system32\mrt.exe and select OK.
- If prompted, select Yes.
- Follow the prompts to scan and clean the PC.
- Restart the PC, then install the latest Windows updates.
If scans stay clean and no new detections appear after restart, that is consistent with the threat having been removed.