Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Troj/Zbot - HAD

Hi everybody,

I am using Sophos Anti-Virus 8.0.20C on the Mac and I am having a very annoying alert recurring constantly throughtou the day.

I have an alert come up saying that it has detected the Troj/Zbot - HAD (sometimes the HAD is replaced with something else).  So I open up Quarantine Manager and Authenticate to be able to remove it, but as soon as I have authenticated, the threat in the window disappears without giving me a chance to clear it.

This has been going on for weeks and I have run the full scan of the machine a number of times, which comes up clean, but it keeps coming up.

Does anyone know why this is and how I can stop this happening?

UPDATE - I have since truned off the Scan inside archives and compressed files option in the preferences pain as suggetsed on another post but this hasn't solved the issue.

:1014787


This thread was automatically locked due to age.
Parents
  • Here's an excerpt fom the Anti-Virus log ... after I checked a box to 'Write threat and error events to system log' in the system preferences.

    com.sophos.intercheck: Info: Exclusion: /Volumes/Data/ at 15:11 on 16 January 2014
    com.sophos.intercheck:
    com.sophos.intercheck: 2014-01-16 15:12:57 +0000 Threat: 'Mal/BredoZp-B' detected in
    com.sophos.intercheck: Access to the file denied

    :1015487
Reply
  • Here's an excerpt fom the Anti-Virus log ... after I checked a box to 'Write threat and error events to system log' in the system preferences.

    com.sophos.intercheck: Info: Exclusion: /Volumes/Data/ at 15:11 on 16 January 2014
    com.sophos.intercheck:
    com.sophos.intercheck: 2014-01-16 15:12:57 +0000 Threat: 'Mal/BredoZp-B' detected in
    com.sophos.intercheck: Access to the file denied

    :1015487
Children
No Data