This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Running malware in quarantine or cleanup failure

I see a few clients in my console that have this listed under there Status - How can I resolve this alert for them?

I have seen a few post for this, but no real clear indicator of how to resolve this, so if someone can tell me what needs to be done I would appreciate it!

TIA!



This thread was automatically locked due to age.
Parents Reply
  • Michael Smith4 said:

    Hi Jerry,

    I found a way to clear the alert. Once you have verified that any threat has been removed, open Sophos Endpoint> Log in as Admin> Go to Events> Find the alert> Select "Ignore". Once the device communicates with Sophos Central, the alert will be removed there as well.

    Hope this helps.

     Mike

     

     
    I have the same issue here, but I can't do this step as Central Events won't go back far enough. The event happened Oct 18th, 2018 and the Central events only go back 90 days which stops at Oct 31, 2018 as of today. So  my endpoint shows red because I can't clear the Oct 18th event which is already clean. What do I do?
Children