Trellix strongly recommends that you create a custom policy in the Web UI that excludes processes and files and folders for any third-party antivirus software installed on your host endpoints, including the following:
Symantec Endpoint Protection (SEP)
Trend Micro Office Scan
Windows antivirus software
Important
See Microsoft Anti-Virus Exclusion List and Running Windows Antivirus Software on Exchange 2016 Servers for more information on the folders, processes, and file name extensions you should exclude from Trellix Endpoint Security (HX) xAgent malware protection processing.
These exclusions will maximize performance, ensure compatibility with other antivirus software, and reduce the number of duplicate alerts you receive from the malware protection feature and your third-party antivirus software. Use the xAgent default policy to define global malware protection exclusions. See Defining the Malware Protection Exclusion Policy for more information.
Important
Malware protection process, file and folder, or MD5 hash exclusions defined in the xAgent default policy do not apply to host sets assigned to a custom policy, if the custom policy defines different malware protection policy settings. To exclude processes and files and folders for third-party antivirus software installed on your host endpoints, you must define these exclusions for all policies that include a malware protection policy.
In addition, be sure to whitelist the Endpoint Security (HX) xAgent files in your third-party antivirus software, as described in Excluding Agent Files in Your Antivirus Software.
For example, if you are running Symantec Endpoint Protection (SEP), you should create exclusions in SEP for Trellix Endpoint Security (HX) xAgent processes, files, and folders. In addition, you should create exclusions for SEP processes, files, and folders in the xAgent default policy.