This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SHH/Updater-B Fiasco Recovery Steps

Just thought a thread for just the recovery steps would be helpful as I'm sure this is a big mess for many of my IT brethren who will be burning the midnight oil on the cleanup.

Perhaps a Sophos engineer could chime in on:

- what to do about "Software Delivery failed" in Update Manager

- what to do about ALsvc.exe and ALUpdate.exe being detected / quarantined

- other steps?

:30335


This thread was automatically locked due to age.
Parents
  • I'm with these alerts to multiple computers. Infected files are:
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ swlocale.dll
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ ALUupdate.exe
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ jusched.exe

    what to do?

    Daniel Cunha

    Brazil

    :30509
Reply
  • I'm with these alerts to multiple computers. Infected files are:
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ swlocale.dll
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ ALUupdate.exe
    C: \ Program Files (x86) \ Sophos \ AutoUpdate \ jusched.exe

    what to do?

    Daniel Cunha

    Brazil

    :30509
Children
No Data