This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Is any one else seing this alert - Shh/Updater-B False positives

Virus/spyware 'Shh/Updater-B' has been detected in "C:\Program Files\Sophos\Sophos Anti-Virus\Web Intelligence\swi_update.exe". Cleanup unavailable. This is trickling in as alerts but at an alarming rate.

:29723


This thread was automatically locked due to age.
Parents
  • @ JoltCube

    We are using a domain administrator account.

    There was only one case of duplicate system, so that is a non-issue at this point.

    I am talking about the endpoints. They have the files listed previously in their local quarantine. If you try and do the same thing from SEC, it is blank.  If I remove the files from the endpoint quarantine and re-run protect computers from the SEC, the endpoint will return to normal in the SEC.

    :33347
Reply
  • @ JoltCube

    We are using a domain administrator account.

    There was only one case of duplicate system, so that is a non-issue at this point.

    I am talking about the endpoints. They have the files listed previously in their local quarantine. If you try and do the same thing from SEC, it is blank.  If I remove the files from the endpoint quarantine and re-run protect computers from the SEC, the endpoint will return to normal in the SEC.

    :33347
Children
No Data