You can check exclusions policies for Exploit Prevention.
Log on to the ePO - On-prem server as an administrator.
Select Menu | Policy | Policy Catalog, then select Endpoint Secuity Threat Prevention from the Product list.
From the Category list, select Exploit Prevention.
Click the name of an editable policy.
Click on Add and select Linux File - Process from the Exclusion Type drop-down list.
In the Properties section, add Name and File name and path.
Click Save.
In the right pane, select Group Details, then click Wake Up Agents.