The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in mid-October 2026. We hope you enjoy the updated experience.

Configure, schedule, and run scans on a client system

Prev Next

Schedule the default full and quick scans or create and schedule custom scans from the Trellix Endpoint Security (ENS) Client in the Common Options Tasks settings.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.



Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. From the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings.

  3. Click Show Advanced.

  4. From Common, click Tasks.

  5. Configure settings on the page.

    To...

    Follow these steps

    Create a custom scan.

    1. Click Add.

    2. Enter the name, select Custom scan from the drop-down list, then click Next.

    3. Configure the scan settings and schedule, then click OK to save the scan.

    Change the settings for a scan.

    • Double-click the scan, make your changes, then click OK to save the scan.

    To change settings for quick and full scans, navigate to Threat Prevention settings, On-Demand ScanAdvanced, then click the appropriate tab.

    Change the schedule for a quick or full scan.

    1. Double-click Quick Scan or Full Scan.

    2. Click the Schedule tab, change the schedule, then click OK to save the settings.

    By default, the Quick Scan is enabled and scheduled to run every day at 7 p.m. By default, the Full Scan is enabled and scheduled to run every Wednesday at 12 midnight.

    Remove a custom scan.

    • Select the scan, then click Delete.

    Create a copy of a scan.

    1. Select the scan, then click Duplicate.

    2. Enter the name, configure the settings, then click OK to save the scan.

    Run a scan.

    • Select the task, then click Run Now.

    If the task is already running, including paused or deferred, the button changes to View.