Sophos Central is reporting one server with a PUA of WipeGuard. But this looks like a part of the Anti-virus. Do I want this? If not, how do I remove it?
This thread was automatically locked due to age.
Sophos Central is reporting one server with a PUA of WipeGuard. But this looks like a part of the Anti-virus. Do I want this? If not, how do I remove it?
Hi graybeard52
Could you please share the screenshot of the alert which you have received for one of your servers?
So we can come to know what exactly has been detected as PUA of wipeguard and what could be the next course of action.
Regards,
Jasmin
Community Support Engineer | Sophos Support
Sophos Support Videos | Knowledge Base | @SophosSupport | Sign up for SMS Alerts |
If a post solves your question use the 'This helped me' link
Messages like this:
'WipeGuard' exploit prevented in Windows Installation and Setup
Detection type WipeGuard
Application
Path C:\$WINDOWS.~BT\Sources\setup.exe
Version 6.3
PID 5412
Detection ID 06cfa7fd57242236422093d9ee3f8e5ad62ba90ae65237c71f98de23f7de203d