This section describes how to uninstall the Endpoint Security (HX) xAgent software running on your macOS endpoints.
Important
If your organization uses JAMF or BigFix with the remove-helper option, uninstalling the agent will not remove the system extension.
Note
Uninstalling the agent with the remove-helper option, when your organization uses JAMF or BigFix activates a local permission prompt requiring the approval of a user with administrative rights.
Launch the Terminal and enter the following command to run the uninstall script.
sudo /Library/FireEye/xagt/uninstall.toolEnter the administrator password when prompted.
Enter the following command to verify that no xagt processes are running.
ps aux | grep xagtNote
If xagt processes are running on the endpoint, perform one of the following steps:
If all the agent artifacts still remain on the endpoint, run the uninstall script again.
If all the agent artifacts have been removed from the endpoint, manually terminate the xagt processes.
To uninstall the system extension:
Log in to the terminal as an administrator.
Run the uninstall script.
Enter the following command:
uninstall.tool--remove-helperConfirm that the system extension should be removed.
Drag the system extension to the trash to complete the uninstallation of the agent.