Uninstall System Information Reporter (SIR)

Prev Next

Uninstall SIR client from endpoints

You can remove SIR client from endpoints using the following methods:

  • Uninstall SIR manually on the endpoint systems using the command line:

    1. Open the command prompt as an Administrator on the target endpoint system.

    2. Navigate to the Trellix Agent directory by entering the below command:

      For 64-bit OS, cd C:\Program Files\McAfee Agent\x86
      For 32-bit OS, cd C:\Program Files\McAfee Agent\
    3. Execute the uninstallation command:

      frminst.exe /uninstallsir 

      Note

      Using /FORCEUNINSTALL forcibly removes SIR along with Trellix Agent from the client system.

      For more information, see command-line options for installing Trellix Agent.Command-line options for installing Trellix Agent on Windows

      Alternatively, you can use FramePkg.exe /uninstallsir command for uninstallation of SIR.

      SIR is uninstalled from the endpoint.

    Note

    SIR is available in this location: WindowsSettingsInstalled Apps (or Control Panel option in older Windows OS) list. Using the "Uninstall" option here will not permanently remove SIR. Trellix Agent will automatically reinstall SIR again after sometime if you use this method. You must use the command-line method to permanently remove SIR.

Remove the SIR extension from the ePO console

Remove the SIR management components, including policies and reports from the ePO console.

  1. Log on to the ePO server as an administrator.

  2. Navigate to MenuConfigurationExtensions.

  3. Select the System Information Reporter extension file from the list.

  4. Click Remove.

  5. Select Force removal, bypassing any checks or errors for a clean removal and then click OK.