You may need to exclude specific files and folders, processes, and MD5 hashes from Malware Protection processing on all of your host endpoints or selected host sets. Use the Web UI or the API to define the following Malware Protection exclusions:
Select host sets to which the exception policy applies. See Assigning Host Sets to Agent Policies.
Exclude specific processes from malware protection processing for all host endpoints or selected host sets. See Adding Process Exclusions to Malware Protection Processing.
Exclude specific files and folders from malware protection processing for all host endpoints or selected host sets. See Adding Files and Folders Exclusions to Malware Protection Processing.
Exclude specific MD5 hashes from malware protection processing for all host endpoints or selected host sets. See Adding MD5 Hash Exclusions to Malware Protection Processing.
Important
Malware protection exclusions are supported for host endpoints running in specific Windows environments only. Malware protection exclusions are not supported for host endpoints running Windows 2003, XP, or Vista or Windows xAgent versions 23 or earlier.
Excluding host sets, processes, files, and folders, or MD5 hashes from malware protection processing is not recommended because it restricts the items that malware protection scans.
Malware protection process, file and folder, or MD5 hash exclusions defined in the agent default policy do not apply to host sets assigned to a custom policy, if the custom policy defines different malware protection policy settings. To exclude processes, files, and folders for third-party antivirus software installed on your host endpoints, you must define these exclusions for all policies that include a malware protection policy.
Admin access when using the Web UI
Endpoint Security (HX) xAgent version 22 or later installed on your Windows endpoint. If an agent for an earlier release is included in a host set that is managed by a policy, the policy is ignored for that agent.
This section covers the following topics: