This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Threat with no filename/path, can't be removed. So what do I do?

I occassionally get entries like this in my log:

com.sophos.intercheck: 2013-09-20 13:17:37 -0400 Threat: 'Mal/DrodZp-A' detected in
com.sophos.intercheck: Access to the file denied
com.sophos.intercheck:

There is no filename/path ("detected in" is all the log says -- eol) so I can't view in finder and attempts to remove hang/fail as would be expected. If I remove from the quarantine list, it'll just show up again later.

I have Time Machine/Time Capsule and I suspect it's something in a backup file on that volume but that's just my wild guess -- it is weird that Sophos finds it, doesn't/can't indicate the location, offers removal as an option, but is unable to remove it.

  1. Anyone have any insight into what this is (the "no file/path" aspect of the result, not the trojan itself)?
  2. Recommended course of action?

I've searched a bunch on this forum and haven't seen a definitive explanation for the null filename/path.

Thanks!

:1013519


This thread was automatically locked due to age.
Parents
  • Issues detected is mentioned lots of times on here - please search for a previous thread.

    For the disappearing path/folder issue: It could be down to the location of the file detected.  Some suggestions:

    - Try the ‘‘‘‘Reveal in Finder’’’’ button.
    - If you haven’’’’t already done so: Clear the item from the Quarantine Manager. Then rescan the Mac to see if the item is detected again.
    - Cancel any current scan, disconnect external drives (like backup drives etc.), close down other applications, and then re-scan the Mac (as a test to see if it helps).

    :1019341

     - - - - - - - - - - - -

    Communities Moderator, SOPHOS
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Reply
  • Issues detected is mentioned lots of times on here - please search for a previous thread.

    For the disappearing path/folder issue: It could be down to the location of the file detected.  Some suggestions:

    - Try the ‘‘‘‘Reveal in Finder’’’’ button.
    - If you haven’’’’t already done so: Clear the item from the Quarantine Manager. Then rescan the Mac to see if the item is detected again.
    - Cancel any current scan, disconnect external drives (like backup drives etc.), close down other applications, and then re-scan the Mac (as a test to see if it helps).

    :1019341

     - - - - - - - - - - - -

    Communities Moderator, SOPHOS
    Knowledge Base  |  @SophosSupport  |  Video tutorials
    Remember to like a post.  If a post (on a question thread) solves your question use the 'This helped me' link.

Children
No Data