Quarantine and Remediation

Prev Next

Quarantine allows you to isolate infected files so they cannot spread the malicious code to other files or applications on your host endpoint or to other endpoints on your network. It also allows you to perform specific remediation actions after the file is placed in quarantine.

When you enable quarantine, infected files are moved from their original location on the host endpoint to a quarantine location on the host endpoint. After the file is relocated, you can perform additional remediation actions using the Web UI:

  • Clean infected files and remove malware traces. See Cleaning Quarantined Files and Removing Malware Traces from Quarantined Files for more information.

  • Send notification alerts to the host endpoint after an infected file is quarantined or cleaned. See Managing Malware Protection Notification Alerts for more information.

  • View quarantined files in the Web UI. See "Viewing Quarantined Files" in the Endpoint Security (HX) Server User Guide for more information.

  • Acquire quarantined files from the quarantine location. See "Acquiring Quarantined Files" in the Endpoint Security (HX) Server User Guide for more information.

  • Delete quarantined files from the quarantine location. See "Deleting Quarantined Files" in the Endpoint Security (HX) Server User Guide for more information.

  • Restore cleaned files to the original location on the host endpoint or an alternate location using the Web UI or the API. See "Restoring Quarantined Files" in the Endpoint Security (HX) Server User Guide or the Endpoint Security (HX) REST API Guide for more information.

Important

If malware detection is disabled, quarantine and remediation are automatically disabled.

Note

If malware protection notification alerts are enable on your host endpoint, alerts will display on the host endpoint when an infected file is quarantined or cleaned. See Endpoint Security (HX) Server User Guide and the Working with Trellix Endpoint Security notification alerts for more information.