Advisory: Support Portal Maintenance. Login is currently unavailable, more info available here.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Automatic Scan of removable media

Hi,

Is there a way of automatically scanning removable media when attached to a PC? We had an outbreak of conficker a few months back (don't want to go through that again!) and are still getting the odd memory stick attached by teachers that has conficker on. I'd be a lot happier if all memory sticks/USB hard drives were fully scanned each time they were attached!

I am also trying to educate staff to ensure their home PCs are fully protected!

edit - useful info.. We're running Enterprise console 4 and Endpoint security 9

Thanks,

Joe

:691


This thread was automatically locked due to age.
Parents
  • Hi,

    Automated sample collection is coming in ESC 9.5 as part of our "Live Protection" feature. When enabled this features does a look up to Sophos for files that show suspicious behavior. If the file is new to Sophos, and the customer has enabled the "provide a sample option" (its off by default for existing installations), a sample is automatically gathered and processed by the Labs. If the file isn't new then it will either be blocked as malware or ignored if it is a proven legitimate file. As you can imagine this feature will assist in both new malware detection and the reduction of false positives.

    BTW the BETA registration for ESC 9.5 is now live: http://www.sophos.com/products/beta/ 

    Regards,

    John

    :926
Reply
  • Hi,

    Automated sample collection is coming in ESC 9.5 as part of our "Live Protection" feature. When enabled this features does a look up to Sophos for files that show suspicious behavior. If the file is new to Sophos, and the customer has enabled the "provide a sample option" (its off by default for existing installations), a sample is automatically gathered and processed by the Labs. If the file isn't new then it will either be blocked as malware or ignored if it is a proven legitimate file. As you can imagine this feature will assist in both new malware detection and the reduction of false positives.

    BTW the BETA registration for ESC 9.5 is now live: http://www.sophos.com/products/beta/ 

    Regards,

    John

    :926
Children
No Data