This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

W32/Small.CA

Hello

in our enterprse we work with SEC5 and Enpoint 10.0.2, on Win7 enterprise 64b

Recently we got several workplaces where we get the message from Windows ActionCenter, that a (well known) virus was found and must be removed. This is called W32/Small.CA.

Question is now, why does Sophos not detect this threat ? When doing a full system scan, nothing is found.

Best regards

Marco

:22933


This thread was automatically locked due to age.
Parents
  • Hello Marco,

    Question is now, why does Sophos not detect this threat?

    Did the ActionCenter tell you where it has been found? Microsoft's Threat Encyclopedia doesn't tell what distinguishes this particular detection. As you have probably seen "the Internet" either refers to W32.Small.R (which is "mapped by" Sophos' W32/SillyFDC-H) or to "the usual tools". I haven't seen a real resolution.

    Anyway, you should give SMaRT a try - it will eventually tell you how to collect some information and submit this to Support for investigation.

    Christian

    P.S.: I won't rule out that this is a false positive

    :22935
Reply
  • Hello Marco,

    Question is now, why does Sophos not detect this threat?

    Did the ActionCenter tell you where it has been found? Microsoft's Threat Encyclopedia doesn't tell what distinguishes this particular detection. As you have probably seen "the Internet" either refers to W32.Small.R (which is "mapped by" Sophos' W32/SillyFDC-H) or to "the usual tools". I haven't seen a real resolution.

    Anyway, you should give SMaRT a try - it will eventually tell you how to collect some information and submit this to Support for investigation.

    Christian

    P.S.: I won't rule out that this is a false positive

    :22935
Children
No Data