This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

On-access Scanning Disabled since last Sophos Update

I've got 3 samsung laptops all showing the same problems. They've all been upgraded to Windows 10 (64 bit), and worked well for a few weeks. Then, following a Sophos update (they're running Sophos Cloud Endpoint security and Control), now On-access scanning is disabled.

Here's a break down of what happens:

1) Windows 10 notification messages fly in from the right from Microsoft Security & Control to say that virus protection is disabled. I also get one that says unwanted software protection is disabled. If I click the link it shows that both Windows Defender and Sophos are turned off. Selecting the "turn on" does nothing.

2) If I load up the program is shows that On-Access is disabled. It will then try to enable it, at which point the program crashes and hangs. It can only be shut down by using task manager, end task.

3) I've tried disabling Windows Defender with a registry edit to see if there is a conflict. There is no change.

4) In event viewer application log, I'm getting the following: 

Faulting application name: SaVService.exe, version 10.6.1.310, time stamp 0x558033bf
Faulting module name: ICAdapter.dll, version 10.6.2.140, time stamp 0x55d9ccee

5) When looking at services, the Sophos Antivirus service just says "starting"

I've tried full uninstalls and reinstalls 3 times. Each with reboots inbetween etc.

Help please!



This thread was automatically locked due to age.
Parents
  • Hi Holster. I see that a case for you regarding this issue has been opened on December 8th and that we had send you an email with instructions requesting logs. Can you send in the SDU logs into the case from one of these endpoints that are having the issue. The process to gather the logs has been sent to you via the case.
Reply
  • Hi Holster. I see that a case for you regarding this issue has been opened on December 8th and that we had send you an email with instructions requesting logs. Can you send in the SDU logs into the case from one of these endpoints that are having the issue. The process to gather the logs has been sent to you via the case.
Children
No Data