• How to restore a threat file that has been cleaned up?

    Johnson Liu
    Johnson Liu
    How to restore a threat file that has been cleaned up? (The self-developed program was considered a threat file, so it was cleaned up during the copying process.) How can i restore the file?
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • ROP exploit prevented

    fnanfne
    fnanfne
    Hi I have the same issue as the users in this thread. https://community.sophos.com/community-chat/f/discussions/108211/rop-exploit-prevented-in-microsoft Our users are trying to use a VoIP tool called VoIPOffice Communicator and Sophos is blocking…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • WipeGuard exploit prevented in Sophos Endpoint Defense Software

    LHerzog
    LHerzog
    There is one client that does nothing else than reporting WipeGuard preventions. Even for Sophos Processes. What's the use of that feature and log? Initial Detection: WIN-MITRE-Behavioral-TA0040-T1561.002
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Real time scanning slowing developer systems

    Dennis Carlson
    Dennis Carlson
    Real Time sanning is (or seems to be) causing major performance issues for our developers when they are creating a project using yarn to assemble the repositories, even if they have cached the files or have them in a local repository. Can the scans be…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Global folder exclusions and PUA's

    Han Vroon
    Han Vroon
    We are rolling out Sophos on our servers. One server holds the software repository with company software installers and a lot of tooling for us sysadmins. As one can guess, Sophos detects several PUA's, like Nirsoft apps, TightVNC, a.s.o. We and…
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • safe browsing

    Guillermo Garcia
    Guillermo Garcia
    I have a couple of computers that when downloading, it will stay at 100%. will not allow you to open the file/ will not open "Show in folder".... I can go to my downloads page and I can access it and run the download from there. So after so much troubleshooting…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Confusing Exclusion in Threat Protection Policy

    Sophos User6514
    Sophos User6514
    Why would someone want to add the directory %programfiles(x86)%\Sophos\Sophos Anti-Virus\ as an exclusion from scanning for threats in the Threat Protection Policy?
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • J'ai installé InterceptX chez une entreprise cliente. Tous les utilisateurs ne peuvent plus se connecter à leur application-metier. Quand je desinstalle sophos, la connexion revient. Que faire, SVP? Merci d'avance.

    EDGAR GROGUHE
    EDGAR GROGUHE
    J’a
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Sophos exclusions for Microsoft Endpoint Configuration Manager?

    Kevin Everts1
    Kevin Everts1
    Is there anything special that needs to be done for Configuration Manager to work with Intercept-X? Some (not all and it changes A LOT) computers aren't seeing deployments in Software Center. Some computers will see 5 one day then all the next. Some will…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • pages un responsive

    Nishanali ali
    Nishanali ali
    we have a desktop users which is installed the intercept x endpoint. now for these user are facing an issue that when they open a specific link the chrome or edge is getting error pages un responsive. when try with another user from the desktop which…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • CryptoGuard detected ransomware in C:\Windows\explorer.exe

    Minad Miah
    Minad Miah
    Hi, We have had 2 of these notifications over the past week on two computers days apart. Can somebody please help me to understand this. Many thanks in advance. Endpoint Type : Computer OS : Windows Device : …
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • does sophos protect mapped drives on end points

    Paul Arikian
    Paul Arikian
    Does sophos protect mapped drives on endpoints?
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Información de detección 'Troj/DrodZp-CB'

    Dialfoar
    Dialfoar
    Good afternoon I use SyncBackFree, it creates a temporary file. It is detecting it as a virus I've been looking for documentation on Troj/DrodZp-CB and I can't find any documentation. Has something similar happened to you?
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • I would like to know about SoPhos process information.

    kwon hyuk-sang
    kwon hyuk-sang
    Hi I would like to know about SoPhos process information. Please tell us in detail what function the two processes below perform. 1. SoPhosFilesScanner.exe 2. SSPService.exe
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Performace essue when enable Real Time scanning file

    tarek soliman1
    tarek soliman1
    We have a problem issue when enabling Real Time scanning for files, almost the program consumed 10 times delayed if we enable this feature. Any advice ?????
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Websites stop loading in all browsers

    Stuart Bate
    Stuart Bate
    We rolled out Sophos Advanced Endpoint with Intercept X recently (replacing Kaspersky) and we've encountered an issue where a few users suddenly lose access to any website (external and internal) in an web browser. All other network activity is fine,…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • what's about the Firefox SEC_ERROR_REUSED_ISSUER_AND_SERIAL issue with HTTPS decryption

    LHerzog
    LHerzog
    My feeling is, Sophos does not know about the Intercept-X EAP forums. So I put this to focus here. Maybe one of the Sophos members can bring some light into this issue, it this is on Sophos' screen and will be fixed? https://community.sophos.com/intercept…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Bandwith Issues Chrome/Firefox/Edge

    btdb
    btdb
    We have been using Sophos intercept x advanced with MTR for about 6 weeks. Since then, our bandwidth has dropped 90%. We use a gigabit internet connection and have previously achieved the following values ​​in a speed test in the browser: Down: 900MB…
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Sophos Intercept X Client CLI?

    Appa_Omega
    Appa_Omega
    Well hello there, is there any way to trigger a FileScan from commandline with Intercept X? I know with the old endpoint protection you could use the sav32cli.exe, but i can't find this in the new intercep X agent. Hope some one can help. Greeting …
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Sysinternals and Nirsoft detected as PUA

    Ingo Buyny
    Ingo Buyny
    How can i exclude these apps from being detected as PUA? Do i have to exclude every single app one by one?
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Application with "conf.json" blocked without events

    Thomas_LSW
    Thomas_LSW
    Hi, I have a Application with unc path "\\server-01\test$\xyz.exe". The shortcut of the application is in the same folder with "conf.json" in it. Sophos Central blocked this program without any events! Can anybody help ? best regards, Tho…
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • A lot of WMV files deleted since last weeks for unknow reason

    Sophos User3113
    Sophos User3113
    Hello, since last week, for unknown reason our Sophos Endpoint delete all WMV files on computers. This is the event : Malware detected: 'W32/GetCodec-A' at 'XXX\Intro discours.wmv' Any idea why it's happen now?? I already created a ticket to…
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Malicious Behaviour (PrivGuard) detected

    Ingo Buyny
    Ingo Buyny
    Hello, i use gsudo.exe with Windows Terminal to start CMD or Powershell with administrative rights but since i use Sophos Endpoint it shuts down the Terminal app every time the gsudo process opens a new tab. The Error message is "Malicious Behaviour…
    • Answered
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • Sophos Intercept X identified fsquirt.exe as ransomware and then all traces of the alert are gone?

    Mark Andrich
    Mark Andrich
    We received a high alert on one of our workstations. The user was transferring files from their phone via Bluetooth. CryptoGuard detected ransomware in C:\Windows\System32\fsquirt.exe We ran a scan and it came up clean. There's nothing in the…
    • over 2 years ago
    • Sophos Endpoint
    • Discussions
  • View related content throughout Sophos Endpoint
  • More
  • Cancel
<