This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Removed from quarantine list

I have noticed a new Action Taken catagory within the Sophos Enterprise Console  for Endpoint Secuirty and Control ver 9 call "Removed from quarantine list".  What does this mean?  DId the user remove the virus from the Quarantine manager or did Sophos do something internally?

:1184


This thread was automatically locked due to age.
Parents
  •  Did you figure this out with support personnel?

    1/19/2011 7:04:34 AM     Suspicious behavior            c:\documents and settings\633431\local settings\temporary internet files\Content.IE5\IXQ9TKDX\nova[1].exe          None     user     
    1/19/2011 7:03:43 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-5f7bcd4f          Removed from quarantine list     NT AUTHORITY\SYSTEM      
    1/19/2011 7:03:37 AM     Virus/spyware                C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-5f7bcd4f          Blocked     user  
    1/19/2011 7:03:30 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-2850515e          Removed from quarantine list     NT AUTHORITY\SYSTEM      
    1/19/2011 7:03:22 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-2850515e          Blocked     user  
    1/7/2011 3:47:55 PM     Virus/spyware           h__p://www1.505.ru/i.php          Cleaned up     user    
    :8059
Reply
  •  Did you figure this out with support personnel?

    1/19/2011 7:04:34 AM     Suspicious behavior            c:\documents and settings\633431\local settings\temporary internet files\Content.IE5\IXQ9TKDX\nova[1].exe          None     user     
    1/19/2011 7:03:43 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-5f7bcd4f          Removed from quarantine list     NT AUTHORITY\SYSTEM      
    1/19/2011 7:03:37 AM     Virus/spyware                C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-5f7bcd4f          Blocked     user  
    1/19/2011 7:03:30 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-2850515e          Removed from quarantine list     NT AUTHORITY\SYSTEM      
    1/19/2011 7:03:22 AM     Virus/spyware               C:\Documents and Settings\633431\Application Data\Sun\Java\Deployment\cache\6.0\58\1554d1ba-2850515e          Blocked     user  
    1/7/2011 3:47:55 PM     Virus/spyware           h__p://www1.505.ru/i.php          Cleaned up     user    
    :8059
Children
No Data