This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Is any one else seing this alert - Shh/Updater-B False positives

Virus/spyware 'Shh/Updater-B' has been detected in "C:\Program Files\Sophos\Sophos Anti-Virus\Web Intelligence\swi_update.exe". Cleanup unavailable. This is trickling in as alerts but at an alarming rate.

:29723


This thread was automatically locked due to age.
Parents
  • Just got my place in the queue and support assisted with my issue.  Thank you for the assistance.  For anyone who may be running SEC v5, without SUM, who cannot download to the update manager, the following worked for me:

    1. Stop the Sophos Update Manager service on the SEC server.

    2. Go to C:\Documents and Settings\All Users\Application Data\Sophos

    3. Locate the "Working" folder and open it.

    4. Delete the contents of the "Working" folder. (mine contained two folders).

    5. Next, go up one level and locate the Update Manager folder. Open this folder.

    6. Delete the Warehouse folder and all of it's contents.

    7. Start the Sophos Update Manager service.

    8. In the SEC console, right-click the Update Manager and click the Update Now option.

    9. If all is successful, you should see that it is downloading binaries under the 'download status' column. It takes a long time to download but once it did, my other update manager shares and clients were downloading the correct ides.

    Unfortunately, we had the move/delete option selected for quarantine, so off to fix a billion other issues with deleted software. Hope this helps someone and best of luck to everyone.

    :30969
Reply
  • Just got my place in the queue and support assisted with my issue.  Thank you for the assistance.  For anyone who may be running SEC v5, without SUM, who cannot download to the update manager, the following worked for me:

    1. Stop the Sophos Update Manager service on the SEC server.

    2. Go to C:\Documents and Settings\All Users\Application Data\Sophos

    3. Locate the "Working" folder and open it.

    4. Delete the contents of the "Working" folder. (mine contained two folders).

    5. Next, go up one level and locate the Update Manager folder. Open this folder.

    6. Delete the Warehouse folder and all of it's contents.

    7. Start the Sophos Update Manager service.

    8. In the SEC console, right-click the Update Manager and click the Update Now option.

    9. If all is successful, you should see that it is downloading binaries under the 'download status' column. It takes a long time to download but once it did, my other update manager shares and clients were downloading the correct ides.

    Unfortunately, we had the move/delete option selected for quarantine, so off to fix a billion other issues with deleted software. Hope this helps someone and best of luck to everyone.

    :30969
Children
No Data