Malware Scanning (MOVEit Cloud)
- Last Updated: September 18, 2026
- 4 minute read
- MOVEit Transfer
- Version 2026
- Documentation
MOVEit Cloud includes a Progress-managed malware scanning capability that provides an additional security control for detecting potentially malicious content in uploaded files. Malware scanning is integrated into the MOVEit Cloud upload process and does not require customers to deploy or manage anti-virus infrastructure or third-party scanning integrations.
Malware scanning helps:
- Detect potentially malicious content before an uploaded file is made available for use.
- Provide audit visibility into malware detection and scanning events.
- Support organizational security and compliance initiatives.
- Reduce operational overhead through a Progress-managed scanning capability.
Malware scanning is an additional layer of protection and should be used as part of an organization's broader security controls.
How MOVEit Cloud Malware Scanning Works
Malware scanning is automatically applied as part of the file upload process.
When Malware is Not Detected
When the malware scanning capability does not detect malware in the inspected file content:
- The upload completes successfully.
- The file continues through normal MOVEit workflows.
- The scanning event and result are recorded within the system.
- No user intervention is required.
For most workloads, users should observe minimal change to normal file transfer operations.
When Malware is Detected
- The upload is rejected.
- Audit log entries are created describing the event.
- An error is returned to the uploading process or client.
- The uploaded file is not made available within the target MOVEit Cloud environment.
The malware scanning capability is intended to reduce the risk associated with malicious file uploads but does not guarantee detection of all malicious content.
Malware Scanner Availability
MOVEit Cloud is designed to maintain file-transfer availability during periods where the malware scanning capability is temporarily unavailable.
If malware scanning cannot be performed at the time of upload:
- The file upload is allowed to complete.
- The audit log records that malware scanning was not performed for the affected file.
This behavior allows administrators to distinguish between files for which malware scanning was successfully performed and files uploaded while the scanning capability was unavailable.
Deployment and Enablement
Malware scanning is enabled and managed by Progress as part of the MOVEit Cloud service.
Customers are not required to install, configure, maintain, or update malware scanning infrastructure or third-party anti-virus solutions to use this capability.
Progress manages the operation and maintenance of the malware scanning capability.
Data Security and Privacy
Secure Processing
File content is processed by the Progress-managed malware scanning capability as part of the MOVEit Cloud service. Customers are not required to transfer files to customer-managed scanning systems or deploy separate malware scanning infrastructure.
During an upload, file content is streamed through the malware scanning capability for inspection. The scanning capability returns the malware inspection result to MOVEit Cloud and does not modify the original uploaded file.
Multi-Tenant Architecture and Tenant Isolation
The malware scanning capability operates in a multi-tenant environment. Individual MOVEit Cloud tenants do not have dedicated malware scanning instances.
File content is streamed through the scanning capability for inspection rather than being persistently stored by the scanning service. The scanning capability returns the result of the malware inspection to MOVEit Cloud.
MOVEit Cloud retains and manages the original uploaded file using its standard tenant-isolation and data-protection controls.
Malware Scanning Frequently Asked Questions (MOVEit Cloud)
Why was this capability added to MOVEit Cloud?
Malware scanning provides an additional security control for detecting potentially malicious content in uploaded files. The capability helps organizations reduce the risk associated with malicious file uploads while providing centralized audit visibility without requiring customers to deploy and manage separate scanning infrastructure.
Do I need to install or configure antivirus software?
No. Malware scanning is managed by Progress as part of the MOVEit Cloud service and does not require customers to install or maintain separate anti-virus infrastructure for this capability.
Will malware scanning impact normal file transfers?
For most workloads, the impact should be minimal. Malware scanning occurs as part of the upload process, and files for which malware is not detected continue through normal MOVEit workflows.
Actual processing time may vary depending on factors such as file characteristics, workload, and service conditions.
How can administrators determine whether a file was blocked by malware scanning?
Malware detection events are recorded in the MOVEit audit log. Administrators can review audit records associated with upload failures to determine whether an upload was rejected because malware was detected.
What happens when malware is detected?
When the malware scanning capability detects malware, the upload is rejected, an audit record is created, and an error is returned to the uploading process or client. The file is not made available within the target MOVEit Cloud environment.
What happens if malware scanning is temporarily unavailable?
MOVEit Cloud is designed to maintain file-transfer availability if the malware scanning capability is temporarily unavailable.
If a file cannot be scanned, the upload is allowed to complete, and the audit log records that malware scanning was not performed for that file. Administrators can use this audit information to identify affected uploads.
How are large files handled? Is there a limit on the amount of file content that can be scanned?
Files of all supported sizes are submitted for malware scanning. To maintain service performance, malware inspection is currently limited to up to 100 MB of file content per uploaded file.
The inspection threshold may be adjusted by Progress based on ongoing service performance, security considerations, and improvements to the malware scanning capability.
Because the amount of file content inspected is limited, malware scanning should be considered an additional security control rather than a guarantee that an uploaded file does not contain malicious content.