This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

W32/Patched-AK

Hello Guys,

Having issues removing this virus from a clients machine - Have tried to call support, got passed to North America where the system just kept putting me into a loop!

Not sure if this is the correct place to post, so apologies if incorrect.

Have Sophos Endpoint Security & Control 9.7 on an employees laptop - Laptop has become infected with many virueses as it had not been updated for an age (Was running Sophos SBE 7)

Have upgraded to SESC 9.7 (with help from Abingdon Techinical support earlier and removal scripts etc) and fully updated.

Now cannot get rid of W32/Patched-AK Virus located in "memory" - Have removed about 20 of the same virus on the machine which have been attached to thinks such as Applemobiledevice.exe, nvvsc.exe, Bonjour, etc.

Can anyone shed any light on how to remove the final parts of this virus - When I try and do a clean up (Only option available) on the memory infection, i get the response from sophos "Memory: Clean up not available."

Am running in safe mode, w/networking with full administrator rights.

Enviroment:

Laptop: HP 4125

OS: Windows Vista Business SP2, all updates installed.

AV: Sophos ESC 9.7

Malware: Malware Bytes

Many thanks

Paul Govier
Paul@SolveIT.uk.com

:16075


This thread was automatically locked due to age.
Parents
  • Hello SolveIT-UK

    Please contact Sophos Technical Support about this issue. There is an active component in memory that is detected, we will need to see Logs as to the next step to resolve the infection which will involve detecting the load point and getting a sample of the undetected component.

    Cheers

    AK

    :16189
Reply
  • Hello SolveIT-UK

    Please contact Sophos Technical Support about this issue. There is an active component in memory that is detected, we will need to see Logs as to the next step to resolve the infection which will involve detecting the load point and getting a sample of the undetected component.

    Cheers

    AK

    :16189
Children
No Data