Windows security center integration

Prev Next

Trellix Endpoint Security (HX) xAgent version 27 and later integrates with Windows Security Center. This means that Trellix Endpoint Security (HX) is a certified and supported antivirus and antispyware product on specific Windows operating systems. See "Operating System Requirements" in the Endpoint Security Agent (HX) Deployment Guide for more information about the supported Windows versions.

When you enable malware protection processing, including malware detection, malware scanning, and file quarantine on your host endpoint, Trellix Endpoint Security (HX) registers with the Windows Security Center on your host endpoint.

Note

Windows Defender is the default antivirus program for endpoints running Windows 10. On Windows Desktop OSs, Windows Defender is automatically disabled when you enable the malware protection feature on your host endpoints

On Windows Server OSs, if Windows Defender is enabled, Trellix Malware Protection and Windows Defender will run simultaneously. This could cause performance issues and unpredictable behavior. An administrator can uninstall Windows Defender, disable it by using a Group Policy setting, or set Defender to "Passive mode" (for Server 2019). If you want to run both Windows Defender and Trellix Malware Protection, Trellix recommends that you have the two agents exclude each other.

You can view details about Trellix Endpoint Security (HX) on your host endpoint in the Windows Action Center. Any third-party antivirus software running on your host endpoint will also appear in the Windows Action Center.

When malware protection processing is enabled, the Actions Center displays the following information:

  • Virus protection—Indicates Trellix Endpoint Security is up-to-date and malware scanning is enabled.

  • Spyware and unwanted software protection—Indicates Trellix Endpoint Security (HX) is turned on.

When you disable malware protection on your host endpoint, the Windows Action Center displays a message to indicate Trellix Endpoint Security (HX) is turned off. See Enabling and Disabling Malware Detection and Managing File Quarantine for instructions on how to enable malware protection processing.

Note

Only Endpoint Security (HX) server administrators are authorized to enable or disable malware protection using the Web UI or the API. The Trellix Endpoint Security (HX) Turn on now button in the Windows Action Center is not functional. This prevents unauthorized users from enabling and disabling malware protection.