This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos Detected Mal/Behav-043 through Flash drive: How to clean up

Hi Guys,

                 I would like to share a malware(Mal/Behav-043) that  I encountered and how I managed to resolve it.

Symptoms: User's USB sticks were getting infected by Mal/Behav-043 and user's files were hidden in the flash drive but you are unable to see them

Resolve:

1) Unattach a network PC(with Sophos AV already installed) or any other PC that you would like to use(with Sophos AV Installed). Use a PC that does not contain any form of data or software installed. 

2) Insert thumbdrive to PC and scan with Sophos AV if it was not scanned earlier. Once malware is detected and qurantined, do not do anything as yet.

3) Go to command Prompt ('Start' Button --> Run --> CMD)

Insert the following command:  attrib -s -h -a /s /d F:\*.*

The command above will help to unhide all files hidden by the malware. 

Source: http://stackoverflow.com/questions/8095002/windows-batch-script-to-unhide-files-hidden-by-virus

4) Go to Sophos Anti-Virus Qurantine and cleanup virus. 

5) Reformat PC(Parnoid and extreme cases). 

:40713


This thread was automatically locked due to age.