Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

transient warnings

Hello, sometimes when working on the computer I see a popup message which says that Sophos has detected a threat and puts up a window where I can open quarantine manager.  When I click on that the eooro message disappears and there is no trace any more of the error/warning.   This makes me suspect that there is some sort of rootkit running that detects that the antivirus has detected it and then elimiantes all trace.  Is this possible?  How to know or do a ground-up re-test?

Another clue, maybe.  Although properly installed (as far as I know) the Sophos Scans window says that the Scan Local Disks has "never been run" though I have run it many times and the Scan / shows last scanned on 5 May even though i have run it many times since....

:1013583


This thread was automatically locked due to age.
Parents
  • Glad to hear it.

    I see from the screenshot Time Machine is backing up while a full hard drive scan is running.  You may want to pause the back up while the scan runs - just an option so the computer runs a bit faster.

    You may also want to configure the custom scan and exclude the /Volumes/Time Machine folder.  Not too much point scanning it as the files are locked away.  Plus the scan will go faster and you won't get detections from files inside the back ups (TM will eventually overwrite the back ups containing the malware when the space is filled).

    :1013625
Reply
  • Glad to hear it.

    I see from the screenshot Time Machine is backing up while a full hard drive scan is running.  You may want to pause the back up while the scan runs - just an option so the computer runs a bit faster.

    You may also want to configure the custom scan and exclude the /Volumes/Time Machine folder.  Not too much point scanning it as the files are locked away.  Plus the scan will go faster and you won't get detections from files inside the back ups (TM will eventually overwrite the back ups containing the malware when the space is filled).

    :1013625
Children
No Data