Configuring VPN Remote Access for the first time on your Sophos XG Firewall? Check out this useful Community post!
Advisory: Sophos XG Firewall - Antivirus service stopped due to failed pattern update. Please visit this KBA for the latest updates
We'd love to hear about it! Click here to go to the product suggestion community
One of my client's website (https://czlawteam.com/) listed in Sophos database as Malicious (https://www.virustotal.com/gui/url/89df82eee620bb6e2226efdf77e7c600532798afb8d1ff8b4763e27be2879a10/detection), please let me know how can we remove website from your list or findout what is causing the problem.
Hi David Davtyan
Please submit the website URL under "web address (URL)" tab on sample submission website of Sophos. It will take approximately 5 to 6 days to reassess the website and recategorized if it found clean on the reassessment.
In reply to Jasmin:
I did it. now after 1 week
1. Site is still listed as Malicious
2. I don't get any notification or update
What I need to do more to get removed my client's website removed from that list?
In reply to David Davtyan:
I'd request you to wait till Monday, even after that if the website is not accessible, you can open a support case asking them to help you on the recategorization of this website.
Opened Support case, as there wasn't any update on Monday
Will see, how long it will take to get at least any information why site still is listed in your database. thanks
Please provide the case number which you received for after creating a case. Regarding, why it is blocked, I'll not be able to provide information on that, can just say it has been categorized in the Hacking category.
Your case number is [#9650963] .
Here is there response,
This is regarding the service request number 9650963, which you have opened with us.We have created a lab request with our concern team to whitelist the website.We will update you once we will get any update from our team.In case of any immediate assistance you can also contact us back on our support number and quote the Case ID as a reference so that any available engineer will assist you further on the case.Our technical support teams are available 24/7 and can be contacted on your local Technical Support number listed on our website: https://www.sophos.com/en-us/support/contact-support.aspx
Sophos Labs have worked on the Lab request and they have recategorized this website as Business and removed it from the malware repository.
So now anyone with Sophos AV can access that website without any issue.
Virustotal is still showing it as malicious but there we can't change anything. It may automatically be removed or they'll update it as per their procedure.