Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How can I remove Troj/Iframe-HJ?

I installed Sophos Anti-Virus 8.0.6C for Mac today.  It almost immediately found Troj/Iframe-HJ.  However, when I go to the Quarantine Manager, put in my admin password, and press Clean Up Threat, it says "Cleaning up threats..." but the task never finishes.  Is there another way, or another version, I should be using?  And can anyone tell me anything else about this threat?The Sophos website, http://www.sophos.com/en-us/threat-center/threat-analyses/viruses-and-spyware/Troj~Iframe-HJ/detailed-analysis.aspx  is kind of obscure.

Thanks.

JK

:1008452


This thread was automatically locked due to age.
Parents
  • I tried running the scan without the deep scanning.  Once again it ran for about an hour and then terminated with a message that gave no useful information.  The scan logs gave no information except the time the drive began.  The Sophos Anti-Virus ==> Scans ==> Scan Local Drives logs gave no useful (to me) information but start time, the System Diagnostic Reports showed three SophosAntiVirus localhost.crash files, two at the time I booted and one at what was probably the time the crash ended, about an hour after start, but are way too technical to be useful to me and don't even have time stamps beyond their titles.  The /Library/Logs ==> Sophos Anti-Virus.log, in a scan that tried to run yesterday, flags encrypted files, and every two minutes or so puts out a message that says

    2012-07-26 21:37:05 -0400 Threat: 'Troj/Iframe-HJ' detected in
                                                             Access to the file denied

    But, in this scenario, I'm just a dumb user.  Why should I be wading through these logs that I don't really understand?  I see a threat that has been flagged by this program, and I just want to get rid of it.  I am not really comfortable seeing that this threat has been "quarantined" by a program which seems to have some problems, at least on my machine.  At work, I have had good reason to respect Sophos, but I am encountering problems here.

    JK

    :1008494
Reply
  • I tried running the scan without the deep scanning.  Once again it ran for about an hour and then terminated with a message that gave no useful information.  The scan logs gave no information except the time the drive began.  The Sophos Anti-Virus ==> Scans ==> Scan Local Drives logs gave no useful (to me) information but start time, the System Diagnostic Reports showed three SophosAntiVirus localhost.crash files, two at the time I booted and one at what was probably the time the crash ended, about an hour after start, but are way too technical to be useful to me and don't even have time stamps beyond their titles.  The /Library/Logs ==> Sophos Anti-Virus.log, in a scan that tried to run yesterday, flags encrypted files, and every two minutes or so puts out a message that says

    2012-07-26 21:37:05 -0400 Threat: 'Troj/Iframe-HJ' detected in
                                                             Access to the file denied

    But, in this scenario, I'm just a dumb user.  Why should I be wading through these logs that I don't really understand?  I see a threat that has been flagged by this program, and I just want to get rid of it.  I am not really comfortable seeing that this threat has been "quarantined" by a program which seems to have some problems, at least on my machine.  At work, I have had good reason to respect Sophos, but I am encountering problems here.

    JK

    :1008494
Children
No Data