The new docs.trellix.com offers a modernized UI and AI-powered features like conversational searches. Content is currently available only in English. Other languages will be available in mid-October 2026. We hope you enjoy the new experience.

Specify quarantine location and retention time on a client system

Prev Next

You can configure the location of the quarantine folder and how long to keep quarantined items.

Before you begin

Make sure that the interface mode for the Trellix Endpoint Security (ENS) Client is set to Full access or log on to the Trellix Endpoint Security (ENS) Client as administrator.

Quarantined items can include various types of scanned objects, such as files, registries, or anything that Trellix ENS scans for malware. Threat Prevention cleans or deletes items that are detected as threats and saves copies in a non-executable format to the Quarantine folder. You can delete quarantined items, restore or rescan them, or get more information about the threat. For example, you might be able to restore an item after downloading a later version of the content that contains information that cleans the threat.



Task
  1. Open the Trellix Endpoint Security (ENS) Client.

  2. Click Threat Prevention on the main Status page.

    Or, from the Action menu GUID-A3B12F55-7EE9-4519-8FCA-9ACA85C3661F-low.png, select Settings, then click Threat Prevention on the Settings page.

  3. Click Show Advanced.

  4. Click Options.

  5. Configure settings on the page, then click Apply.