Browse By Tags

  • EventID 5038 in Server 2016/2019 with Intercept X Advanced for Server with XDR

    Hello Community, we have several WIndows Server 2016/2019. They have installed Sophos Intercept X Advanced for Server with XDR. After a reboot occurs the eventID 5038. Code integrity determined that the image hash of a file is not valid. The file…
  • Kein Internet Symbol obwohl Internet da ist.

    Hallo liebe Community. Ich total verzweifelt und habe schon tagelang alles mögliche durchprobiert. Ich schildere mal mein Problem. Seit der Umstellung auf Sophos haben alle Server so ein Symbol in der Leiste, als hätten diese kein Internet. Internet…
  • Cannot start HitmanPro.Alert service on Intercept X

    Hello everyone, I have two Windows Servers that report the HitmanPro.Alert service as Stopped. Once I open windows services and try to manually start it I get this message: "Windows coul not start the HitmanPro.Alert service service on Local…
  • EDR SQLite journal disk activity

    Hi everyone, We have Sophos Intercept X with EDR installed on severals Windows Server 2016 and 2019. Every now and then, we can see this kind of disk activity : The disk activity is almost maxed out and disk latency become bad (this is probably…
  • Questions about Intrusion Prevention on Intercept X for servers

    Hello everyone, According to this article regarding Microsoft CVE-2020-1472 vulnerability, it says that for Endpoint and Server IPS: "These products are currently in Early Access. IPS signatures were published on September 17, 2020 SIDs…
  • SafeGuard Enterprise – Added platform support for Windows Server 2016 and SQL Server 2016

    Hi Everyone, The standard installation packages of the SafeGuard 8.00.2 Server and WebHelpDesk do not support MS Windows 2016 Server. For a successful operation and installation, it is required to apply the transform files, which can be downloaded…
  • SavService - Multiple PS.exe

    Hi Guys, We have a large virtual environment (VMWare) mix of 2008/R2, 2012/R2 & 2016 - our issue is only affecting 2012+ Windows OS's The SavService is running but we have a huge amount of spawned 'PS.exe' b/w 50-100 sub-processes per server. We…
  • Memory Leak in Server 2008R2/2012R2/2016

    We have identified a slow memory leak on servers that have Sophos installed. We have used Task Manager, ProcMon, Process Explorer, Vmmap and RamMap to try to isolate and identify the process(es) that is consuming the nonpaged pool of memory. So far our…
  • Lockdown Exceptions

    So we have locked down a handful of out server - Occasionally I need to run executables from a UNC path. Since UNC paths are not supports, I make a filename exception to the Lockdown policy we have for the server group that the server endpoint lives…
  • Deploying from a Generalised Server Image

    We're running Citrix 7.15 on Server 2016 with Server Protection, managed by Central Cloud. Using PVS to deploy servers, they all boot from the image and take a personality on boot, this is all working fine and the PVS targets appear in Central console…
  • Sophos Server Protection AD & Non-AD Clients handling issue

    hello everybody, SEC was installed and Sophos Server Protection licensed was input, that time Active Directory was not present. Currently AD is created and clients are pushing into that AD one by one. The SEC server is also push into AD. Now can it…
  • Sophos Enterprise Console suddenly not Opening !

    hello everybody, suddenly Sophos Enterprise Console not Opening and showing the error on a dialog box like below- but SEC was running well all day. waiting for a quick response. Thanks in Advance Riyad
  • Still getting yellow alert after reinstalling client on win server 2016. Updates are happening regularly. I'm not sure what I'm missing.

    I have a server (windows server 2016) that is stating it has been "inactive for 2+ months". It is receiving regular updates. I have uninstalled and reinstalled the client. I am still receiving the yellow (!) alert. I have looked at the logs and don't…
  • Windows Server 2016 Support?

    Good Morning, I am just curious as to when we can expect Microsoft Windows Server 2016 to be supported for installation of anti-virus/protection via Sophos Enterprise Console. Thank you, Matt