The Deny List module enables Trellix Endpoint administrators to alert, block or quarantine files based on hash or a file path list.
With this module, Trellix Endpoint administrators can:
Upload file hashes or file paths.
Import file hash intel from a third-party Intel feed.
Select the action required to be taken on the files if they are detected on an endpoint.
Deny List alerts appear on the Trellix Endpoint Security Alert view, like other module alerts.