Configuring Malware Detection Using Console

This section describes the malware detection settings and configuration files available in the Veeam Backup & Replication console:

  • File Detection — enable file system activity analysis and indicators of compromise detection, and manage the suspicious files, extensions, and attack tactics they monitor.
  • Encryption Detection — enable the inline scan that detects data encrypted by malware during backup jobs.
  • Signature Detection — choose the default engine used to scan restore points: Veeam Threat Hunter or 3rd party antivirus software.
  • Veeam Incident API — run a quick backup when a Veeam Incident API request triggers a malware detection event.
  • Notifications — receive SNMP traps or email notifications about malware detection events.
  • Antivirus Configuration File — customize the AntivirusInfos.xml file that defines the antivirus software used to scan backups.

In This Section

Page updated 2026-08-13

Page content applies to build 13.1.1.18