This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Is any one else seing this alert - Shh/Updater-B False positives

Virus/spyware 'Shh/Updater-B' has been detected in "C:\Program Files\Sophos\Sophos Anti-Virus\Web Intelligence\swi_update.exe". Cleanup unavailable. This is trickling in as alerts but at an alarming rate.

:29723


This thread was automatically locked due to age.
Parents

  • StAloysius wrote:

    I've been trying to deal with this all morning. Arrived to find a mess of emails.

    We are running Sophos Enterprise Console, and although I have tried following teh instructions here, it has been unable to pull new updates.


       Update manager status                                                                Date/time            Code      Description                            
                                                 20/09/2012 9:47:57 AM80040404  Threat detection data update failed.   
                                                 20/09/2012 9:47:57 AM80040406  Delivery failed for software subscription 'Recommended'. Access to the source update location is denied or the location is otherwise unavailable.
                                                 20/09/2012 9:19:55 AM80040401  Software update failed.                
                                                 20/09/2012 9:18:07 AM80040404  Threat detection data update failed.   
                                                 20/09/2012 9:08:09 AM80040404  Threat detection data update failed.

    Is there an alternative update location I can use to try and pull teh files from. Currently we use a server our upsteam organisation provides. Is there a Sophos server I can direct the update requests to as a secondary option?

    Also... our On Access Scan was set to delete ... any suggestions for repairing my endpoints, 30+ servers and about 1000 workstations/laptops?


    The false positive is preventing the Sophos Update Manager from updating itself. Please see

    http://www.sophos.com/en-us/support/knowledgebase/118311.aspx for further help.

    :30865
Reply

  • StAloysius wrote:

    I've been trying to deal with this all morning. Arrived to find a mess of emails.

    We are running Sophos Enterprise Console, and although I have tried following teh instructions here, it has been unable to pull new updates.


       Update manager status                                                                Date/time            Code      Description                            
                                                 20/09/2012 9:47:57 AM80040404  Threat detection data update failed.   
                                                 20/09/2012 9:47:57 AM80040406  Delivery failed for software subscription 'Recommended'. Access to the source update location is denied or the location is otherwise unavailable.
                                                 20/09/2012 9:19:55 AM80040401  Software update failed.                
                                                 20/09/2012 9:18:07 AM80040404  Threat detection data update failed.   
                                                 20/09/2012 9:08:09 AM80040404  Threat detection data update failed.

    Is there an alternative update location I can use to try and pull teh files from. Currently we use a server our upsteam organisation provides. Is there a Sophos server I can direct the update requests to as a secondary option?

    Also... our On Access Scan was set to delete ... any suggestions for repairing my endpoints, 30+ servers and about 1000 workstations/laptops?


    The false positive is preventing the Sophos Update Manager from updating itself. Please see

    http://www.sophos.com/en-us/support/knowledgebase/118311.aspx for further help.

    :30865
Children
No Data