This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Malware alert no action documented?

I have a case where an endpoint shows as having an alert that malware was found, but it does not indicate if any action was taken.  Also worth noting is that the event does not appear in the Alerts page.

Does this mean the malware has not been cleaned?

Any idea why the alert wouldn't appear in that page?



This thread was automatically locked due to age.
Parents
  • Hi Carl,

    We have a mechanism to clean the infected file , that would mean that it would remove the malicious content from the file.  An additional option is provided if it cannot be cleaned and the recommended action is delete or not . On your Dashboard make sure your device  is sync with Sophos Central by checking the last seen or you may initiate a command from Dashboard to Update and then it would show on the logs.

    Regards,

    Aditya Patel
    Global Escalation Support Engineer | Sophos Technical Support

    Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts
    If a post solves your question use the 'This helped me' link.

Reply
  • Hi Carl,

    We have a mechanism to clean the infected file , that would mean that it would remove the malicious content from the file.  An additional option is provided if it cannot be cleaned and the recommended action is delete or not . On your Dashboard make sure your device  is sync with Sophos Central by checking the last seen or you may initiate a command from Dashboard to Update and then it would show on the logs.

    Regards,

    Aditya Patel
    Global Escalation Support Engineer | Sophos Technical Support

    Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts
    If a post solves your question use the 'This helped me' link.

Children