Troubleshoot Microsoft Defender Antivirus scan issues
In brief
The documentation now explains that enabling Disable Catchup Full Scan disables catch-up scans after missed scheduled full scans, while disabling it enables them.
What Defender admins need to know
Administrators can interpret this setting correctly when troubleshooting scan configuration and performance issues.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Troubleshoot Microsoft Defender Antivirus scan issues
|Scan|Archive Max Depth||
|Scan|Archive Max Size||
|Scan|Check For Signatures Before Running Scan|This policy setting allows you to manage whether a check for new virus and spyware security intelligence occurs before running a scan. It applies to scheduled scans, but has no effect on scans initiated manually from the user interface or scans from the Command Prompt: MpCmdrun.exe -Scan [Options].|
|Scan|Disable Catchup Full Scan|This policy setting allows you to configurecontrols whether catch-up scans forrun after scheduled full scans. Ascans are missed. Because the setting name begins with Disable, Enabled disables catch-up scan is a scan that's initiated because a regularly scheduled scan was missed. Usually, these scheduled scans are missed because the computer was turned off at the scheduled time.full scans, and Disabled enables them.
If you disable orthis setting and a device misses two consecutive scheduled full scans, a catch-up scan starts the next time someone signs in. Catch-up scans require a configured scheduled scan.
If you don't configure this setting, the client default applies, and catch-up scans for scheduled full scans occur. If a computer is offline for two consecutive scheduled scans, a catch-up scan is started the next time someone signs into the computer. If there's no scheduled scan configured, no catch-up scan runs. full scans are disabled.|
|Scan|Enable Low CPU Priority|This policy setting allows you to enable or disable low CPU priority for scheduled scans.
If you enable this setting, catch-up scans for scheduled
- If you enable this setting, low CPU priority is used during scheduled scans.
- If you disable or don't configure this setting, no changes are made to CPU priority for scheduled scans.|
|General|Excluded Extensions||
|General|Excluded Paths||
@@ -10,7 +10,10 @@ ms.collection: - tier3 ms.topic: troubleshooting ms.subservice: ngp-ms.date: 03/20/2026+ms.date: 08/20/2026+ms.custom: msecd-doc-authoring-1015+ai-usage: ai-assisted+#customer intent: As a security administrator, I want to troubleshoot Microsoft Defender Antivirus scans so that I can identify and resolve scan configuration and performance issues. --- # Troubleshoot Microsoft Defender Antivirus scan issues@@ -61,7 +64,7 @@ The following table summarizes antivirus settings in Microsoft Intune for Window |Scan|Archive Max Depth|| |Scan|Archive Max Size|| |Scan|Check For Signatures Before Running Scan|This policy setting allows you to manage whether a check for new virus and spyware security intelligence occurs before running a scan. It applies to scheduled scans, but has no effect on scans initiated manually from the user interface or scans from the [Command Prompt](command-line-arguments-microsoft-defender-antivirus.md): `MpCmdrun.exe -Scan [Options]`.|-|Scan|Disable Catchup Full Scan|This policy setting allows you to configure catch-up scans for scheduled full scans. A catch-up scan is a scan that's initiated because a regularly scheduled scan was missed. Usually, these scheduled scans are missed because the computer was turned off at the scheduled time. <br/><br/>If you disable or don't configure this setting, catch-up scans for scheduled full scans occur. If a computer is offline for two consecutive scheduled scans, a catch-up scan is started the next time someone signs into the computer. If there's no scheduled scan configured, no catch-up scan runs. <br/><br/> If you enable this setting, catch-up scans for scheduled full scans are disabled.|+|Scan|Disable Catchup Full Scan|This policy setting controls whether catch-up scans run after scheduled full scans are missed. Because the setting name begins with _Disable_, **Enabled** disables catch-up full scans, and **Disabled** enables them. <br/><br/>If you disable this setting and a device misses two consecutive scheduled full scans, a catch-up scan starts the next time someone signs in. Catch-up scans require a configured scheduled scan. <br/><br/>If you don't configure this setting, the client default applies, and catch-up full scans are disabled.| |Scan|Enable Low CPU Priority|This policy setting allows you to enable or disable low CPU priority for scheduled scans. <br/>- If you enable this setting, low CPU priority is used during scheduled scans. <br/>- If you disable or don't configure this setting, no changes are made to CPU priority for scheduled scans.| |General|Excluded Extensions|| |General|Excluded Paths|| 