Antimalware Check

Hello all,

What if customer has Kaspersky endpoint. How can RMAD DRE Antimalware check work with it ? and does RMAD DRE has the capability to scan alone and how can it support in this scenario?

  • RMAD DRE generally leverages the Antimalware Scan Interface (AMSI) or command-line scanners already present on the recovery console. Since the customer has Kaspersky, RMAD DRE can actually trigger a scan through Kaspersky’s command-line interface during the recovery process to ensure the backup is clean before it's restored. It doesn't usually have its own 'engine' in the traditional sense, but it acts as the orchestrator to make sure your AV does its job before the AD comes back online.