Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

False Positives?

I recently installed Sophos about two weeks ago.  Today I get bunch of alerts about Troj/TdlMbr-D.  Mainly in my email messages that I know are from reputable sources.  Are these false positives and can anyone shed some light on this issue?  I'm running a MBP with Mountain Lion.

:1009792


This thread was automatically locked due to age.
Parents
  • same here!  as of today 11-04-13  Quarantine Manager is reporting that my mac is riddled with Troj/TdlMbr-D

    very odd as it hadn't yesterday.  Computers been off all night,  majority appear to be Apple Mail related...  the more I click in Mail the more it reported!

    e.g.  /Users/havinabubble/Library/Mail/V2/Mailboxes/Deleted Messages (havinabubble).mbox/AE359E0F-4929-40A0-A6B1-5AF10974865A/Data

    I tried removing manually some of the early ones, which where in VERY old files (not Apple Mail related)...Palm related!  But then figured this must be a False/Positive.

    followed the Clear and Reboot suggestion above...at first this didnt change, on startup it reported another 44 and displayed.

    but just been to check and NOTHING, no mention of ANY in Quarantine Manager (I didnt clear the other 44 btw)

    very odd :smileyfrustrated:

    OS 10.8.3

    SAV 8.0.12C

    :1011984
Reply
  • same here!  as of today 11-04-13  Quarantine Manager is reporting that my mac is riddled with Troj/TdlMbr-D

    very odd as it hadn't yesterday.  Computers been off all night,  majority appear to be Apple Mail related...  the more I click in Mail the more it reported!

    e.g.  /Users/havinabubble/Library/Mail/V2/Mailboxes/Deleted Messages (havinabubble).mbox/AE359E0F-4929-40A0-A6B1-5AF10974865A/Data

    I tried removing manually some of the early ones, which where in VERY old files (not Apple Mail related)...Palm related!  But then figured this must be a False/Positive.

    followed the Clear and Reboot suggestion above...at first this didnt change, on startup it reported another 44 and displayed.

    but just been to check and NOTHING, no mention of ANY in Quarantine Manager (I didnt clear the other 44 btw)

    very odd :smileyfrustrated:

    OS 10.8.3

    SAV 8.0.12C

    :1011984
Children
No Data