What the impact of defender full scan on servers? Please share the details.

Anonymous
2024-06-15T19:22:19+00:00

Hi Team,

  1. Can we perform the full scan on workstations and servers from defender portal? If yes, Please share the details to check and test on some system. also share if any impact from the full scan on servers?
  2. How can we check the full scan result in the defender portal?

Regards,

Saurabh

***moved from Windows / Windows 11 / Security and privacy***

Windows Windows Client for IT Pros Networking Network connectivity and file sharing

Locked Question. This question was migrated from the Microsoft Support Community. You can vote on whether it's helpful, but you can't add comments or replies or follow the question. To protect privacy, user profiles for migrated questions are anonymized.

0 comments No comments
{count} votes
Accepted answer
  1. Anonymous
    2024-06-18T08:55:32+00:00

    Hello,

    Running a full scan on servers consumes significant resources, including CPU and disk I/O, which may impact the performance of services running on those servers. It is recommended to schedule such scans during off-peak hours to minimize disruption. If your endpoints are connected to large shared network drives and you configure this scan this does impact the completion time of a full scan, making it take significantly longer due to the increased amount of data being scanned. You can refer to the following link.

    Microsoft Defender Antivirus full scan considerations and best practices - Microsoft Defender for Endpoint | Microsoft Learn

    Configure scanning options for Microsoft Defender Antivirus - Microsoft Defender for Endpoint | Microsoft Learn

    If you are worried about the risks of mapping a shared network drive, Microsoft has a corresponding policy for this. You can refer to the following link for details.

    Protect SMB traffic from interception | Microsoft Learn

    Best Regards

    Zunhui

    0 comments No comments

1 additional answer

Sort by: Most helpful
  1. Anonymous
    2024-06-15T19:08:23+00:00

    Hi Team,

    Please provide me solution of my below doubts:

    1. How does our MDE implementation handle shared network drives? For some, to me unknown, reason many of our endpoints have attached shared networks drives, very large ones (My pc, 15TB, 16TB, 10TB, 10TB = 51TB!). Does this impact the Full Scan completion time?
    2. Doesn’t these shared networks drives put us into a large risk when it comes to malware/lateral movement, as I assume most of our users have the same shared drives attached?

    Regards,

    Saurabh

    0 comments No comments