The Sophos Community will be offline for scheduled maintenance this Saturday, May 27th, at 13:00 UTC for approximately 1 hour. Apologies for any inconvenience caused.
"Wanna" ransomware outbreak. Please see this Sophos article sophos.com/kb/126733 for advice on how to protect your organization. Immediate action recommended.
This article describes how Conficker can be removed.
Applies to the following Sophos product(s) and version(s)
Sophos Anti-Virus for Windows 2000+Sophos Anti-Virus for LinuxSophos Anti-Virus for Mac OS XSophos Anti-Virus for Unix
Conficker is routinely detected by Sophos Anti-Virus (SAV), and can be removed in the usual way. Details of some of the variants detected and removed by SAV are listed below.
If you choose not to use SAV, you can remove Conficker with the Sophos Virus Removal Tool (Note: this tool is only available for Windows.) Click the link for instructions on how to use it, and for the download location.
Details of the specific Conficker variants that Sophos detects are listed on the Sophos Website and include: Mal/Conficker-A, Mal/Confick-Dam, Mal/Conficker-B, Mal/ConfInf-A, Troj/ConfData-A, Troj/ConfDr-B, Troj/ConfDr-C, Troj/ConfDr-Gen , W32/ConfDr-Gen, W32/Confick-A, W32/Confick-B, W32/Confick-C, W32/Confick-D, W32/Confick-F, W32/Confick-G, W32/Confick-H, W32/Confick-I, W32/Confick-K, W32/Confick-L, W32/Confick-M, W32/ConfikMem-A, W32/ConfikMem-B
Sophos Anti-Virus for Windows 2000+: removing W32/Confick and Mal/Conficker with Sophos Anti-Virus
Every comment submitted here is read (by a human) but we do not reply to specific technical questions. If you need technical support please post a question to our community. Alternatively for licensed products open a support ticket.