This section describes how to uninstall disguised Endpoint Security (HX) xAgent software running on your Windows endpoint.
Locate the
.msiinstallation file for the xAgent software. This must be for the same xAgent version that is installed on the host endpoint.Run the
.msifile, selecting the Remove option when prompted.Confirm the software removal by responding Yes or clicking Remove as necessary.
Important
A reboot is necessary after uninstalling Trellix Endpoint Security (HX) xAgent version 29.
Note
Artifacts that remain in the
C:\Windows\FireEyefolder after the xAgent software has been uninstalled will be deleted the next time the endpoint host is rebooted.If a Windows xAgent uninstall attempt fails because the binary is missing or corrupt or because the
ProgramData/FireEye
orProgram Files/FireEye
directories are missing or corrupt, reinstall the agent using command-line commands (msiexec /i xagt.msi /qn
) and then uninstall it.