I have opened case #7112044 asking about this last Thursday but nobody has responded yet... We do not use these IP ranges nor do we have Windows XP in our environment.
This thread was automatically locked due to age.
Hi,
I suppose the obvious things to check/consider initially would be:
1. In the Central Audit logs (cloud.sophos.com/.../audit), no one other than expected admins have logged in to obtain the URLs of your installers?
2. None of your end users have taken the SophosInstall.exe home or shared it with friends?
3. The URLs of your installers (e.g. dzr-api-amzn-eu-west-1-9af7.api-upe.p.hmr.sophos.com/.../SophosInstall.exe) have been published/leaked/shared?
Regards,
Jak
Hi,
I suppose the obvious things to check/consider initially would be:
1. In the Central Audit logs (cloud.sophos.com/.../audit), no one other than expected admins have logged in to obtain the URLs of your installers?
2. None of your end users have taken the SophosInstall.exe home or shared it with friends?
3. The URLs of your installers (e.g. dzr-api-amzn-eu-west-1-9af7.api-upe.p.hmr.sophos.com/.../SophosInstall.exe) have been published/leaked/shared?
Regards,
Jak