Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

removing - delating virus manualy

I tryed to delate maualy virus W32/Strati-Gen from Quarantine Manager bit it is immpossile!!! Please someone help! how can I delate virus from my computer and what sjould i di with files that are not in Quarantine Manager but there are suspious??? Thank you 

:1008029


This thread was automatically locked due to age.
  • Where does the quarantine manager say the threat is located?  Quarantine Manager will not remove threats from within most archive files or backups, as that could compromise the rest of the files stored along side.  Often, the entire archive can just be thrown in the trash or removed from your backup.

    :1008035
  • I am having the same problem.  The quarantine manager lists two threats, but only gives the name, not a path.  The instructions say to delete manually, but when I follow them they appear to be for a windows machine and do not work for me.  How do I delete the threats as I do not know where they are?

    :1008083
  • Please read the "Deleting a threat" thread on here.  Manual deletion is done by creating a custom scan with specific instructions to delete instead of quarantine.

    The help under the help menu in Sophos Anti-Virus also has fairly clear instructions.

    However, it's likely that the detection came from one of a few sources:

    1) email -- just delete your spam, and the threat will be gone.

    2) web downloads - check your download folder and delete anything you don't need.

    3) cached web pages - delete your web cache and close your web browser

    4) cached Java - clear your Java Cache folder (this is a bit trickier, as you need to actually set your Java settings -- but if you don't use Java, it'll automatically be disabled these days and so you won't be getting downloaded threats anyway)

    5) trojanized peer-to-peer downloads - this should be obvious

    Files can also make it from these sources into your backups, which may not let you perform a manual cleanup (you may have to remove them by hand from within Time Machine).

    If a file is named something like "UPS Delivery.zip" -- it's in a Bredo spam email, and you can just delete the email and attachment.  If the filename ends in .html, .php, .js, etc. it's likely in your web cache.  The detection name also helps, as we write the detections to detect specific families of malware, which show up in specific locations.

    So:

    What threats were lsited?

    What filename was listed?

    Did you check the help menu?

    :1008085