Uninstall SIR client from endpoints
You can remove SIR client from endpoints using the following methods:
Uninstall SIR manually on the endpoint systems using the command line:
Open the command prompt as an Administrator on the target endpoint system.
Navigate to the Trellix Agent directory by entering the below command:
For 64-bit OS, cd C:\Program Files\McAfee Agent\x86
For 32-bit OS, cd C:\Program Files\McAfee Agent\
Execute the uninstallation command:
frminst.exe /uninstallsir
Note
Using /FORCEUNINSTALL forcibly removes SIR along with Trellix Agent from the client system.
For more information, see command-line options for installing Trellix Agent.
Alternatively, you can use FramePkg.exe /uninstallsir command for uninstallation of SIR.
SIR is uninstalled from the endpoint.
Note
SIR is available in this location: → → (or Control Panel option in older Windows OS) list. Using the "Uninstall" option here will not permanently remove SIR. Trellix Agent will automatically reinstall SIR again after sometime if you use this method. You must use the command-line method to permanently remove SIR.
Remove the SIR extension from the ePO console
Remove the SIR management components, including policies and reports from the ePO console.
Log on to the ePO server as an administrator.
Navigate to → → .
Select the System Information Reporter extension file from the list.
Click Remove.
Select Force removal, bypassing any checks or errors for a clean removal and then click OK.