On the Download Location page of the wizard, select Download software updates from the Internet, and then click Next.
Specify information for the standard program, specify the command line as mpam-fex64 -q.
On the Deployment Package page of the wizard, select an existing deployment package or create a new deployment package to contain the software update files associated with the rule.
One of the choices for scep (System Center Endpoint Protection) definition update sources in sccm 2012 is from a UNC file share, however in typical sccm fashion there is a bit of leg work required to use this method.
One of the choices for scep (System Center Endpoint Protection) definition update sources in sccm 2012 is from a UNC file share, however in typical sccm fashion there is a bit of leg work required to use this method.

Tick Updates from UNC File Shares and move to the top of the list, un-tick other sources if necessary. Select the Program Type as Standard Program and click Next. At a minimum, set the rule to run two hours after each software update point synchronization. Although using Configuration Manager software updates is the recommended method to keep definitions up to date, you can also configure wsus as a method to allow users to manually initiate definition updated. To update antimalware definitions, you can use one or more of the following methods: Updates distributed from Configuration Manager, this method uses Configuration Manager software updates to deliver definition and engine updates to computers in your hierarchy. On the Classifications tab of the Products and Classifications dialog box, select the Definition Updates and Updates check boxes.

We have deployed the update package to the device collection.
This strategy keeps the size of the definition update package smaller, which allows it to replicate to distribution points more quickly.
Click OK to close the Configure Definition Update Sources dialog box.
In the Definition updates section of the antimalware properties dialog box, click Set Source. On the Deployment Settings page of the wizard, in the Detail level list, select Minimal, and then click Next. In the Assets and Compliance workspace, expand Endpoint Protection, and then click Antimalware Policies. Click OK to close the Configure Definition Update Sources dialog box. Choose Set paths, add the UNC path. In the Settings group, click Configure Site Components, and then click Software Update Point. Make sure that the Enable the deployment after this rule is run check box is selected, and then click Next. In the Approve Updates dialog box, select the computer group for which you want to approve the updates, and then click Approved for Install.