This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Unable to cleanup Troj/EncProc-U on iMac

Sophos was unable to cleanup the above mentioned malware contained in a file named upd.DAT. It was first detected over a year ago but I have never been able to clean it up. Whenever I scan, it shows up again. Is there any action I can take to eliminate it?

:1020171


This thread was automatically locked due to age.
Parents
  • Hey Christian.

    I'm still stuck. The file is not found via Finder. Sophos shows it as being in the /Volumes/Bootcamp/users/....... location. I do have Windows running on a partition on my iMac (seldom used by there if I need it). Some documentation I saw (Sophos?) suggested it was a Windows issue. I opened Windows and searched for the file on the Windows side but it was not found. Sophos says it can't be deleted. So does the Mac if I try to drag it to the trash. It appears the default program to open it is a media player called VLC. I deleted VLC but the file is still there. I don't get the responses illustrated in the forum post you provided, so I'm not sure what my next steps might be. I'm not that technically savvy, so I'm in a bit over my head. As far as I can tell, I am not impacted. I think Sophos has quarantined it but I can't eliminate it. Any suggestions?

    :1020188
Reply
  • Hey Christian.

    I'm still stuck. The file is not found via Finder. Sophos shows it as being in the /Volumes/Bootcamp/users/....... location. I do have Windows running on a partition on my iMac (seldom used by there if I need it). Some documentation I saw (Sophos?) suggested it was a Windows issue. I opened Windows and searched for the file on the Windows side but it was not found. Sophos says it can't be deleted. So does the Mac if I try to drag it to the trash. It appears the default program to open it is a media player called VLC. I deleted VLC but the file is still there. I don't get the responses illustrated in the forum post you provided, so I'm not sure what my next steps might be. I'm not that technically savvy, so I'm in a bit over my head. As far as I can tell, I am not impacted. I think Sophos has quarantined it but I can't eliminate it. Any suggestions?

    :1020188
Children
No Data