Execute reactions from the Search Results table.
Caution
Reactions applied on endpoints cannot be undone. Continue with care.
Select Menu → Real-time Search, then run a search expression.
When results appear in the Search Results table, select the rows you want to target.
Important
Remember that a single row might reference more than one managed endpoint, expressed in the count column. In that case, the reaction is applied to all endpoints referenced by the row.
Click Actions → Custom.
Select a reaction from the drop-down list. If the reaction takes arguments, insert values for each argument.
Click Yes to confirm.
When you execute a reaction with Trellix EDR, the action is logged in the Action History dashboard.