The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in mid-October 2026. We hope you enjoy the updated experience.

Restore quarantined objects from Trellix ePO - On-prem

Prev Next

Restoring objects from the quarantine replaces all objects that the convicted processes created, changed, or deleted, and the files associated with those processes, on the system where they were before the Clean action occurred.

Task
  1. Select MenuClient TasksClient Task Catalog.

  2. From Client Task Types, select Endpoint Security Threat PreventionRestore from Quarantine.

  3. Click the name of an existing client task or click New Task.

  4. Configure the settings and click Save.

  5. Under Actions, click the Assign link, specify the computers to assign the task to, then click OK.

  6. Click Schedule to schedule the task, then click Save.

    See Trellix ePO - On-prem Help for schedule information and the Client Task Assignment Builder.

  7. After restoring a Windows service, reboot the client system to complete the restore.