Intercept X - How to report false positives
- 125439
- 26 Oct 2016
- 0 people found this helpful
- English | Español | Italiano | 日本語 | Français | Deutsch
This article details how to raise issues for potential false positives with Intercept X, along with the available workarounds,
Applies from the following Sophos product(s) and version(s)
Central Intercept X 11.5.0
What To Do
- CryptoGuard Ransomware Protection
- Perform the following options:
- Reboot the computer
- If the detection is valid it will trigger again. However, this initial reboot may resolve the issue.
- Do nothing, the application will continue to be blocked
- Turn off CryptoGuard ransomware protection in the policy to prevent the detection. (You may want to limit this to the affected computer/s).
- Reboot the computer
- Open a support ticket and provide the following information:
- Information on the application triggering the detection.
- The output of the Sophos Diagnostic Utility.
Note: This Utility can be launched from the Sophos Endpoint user interface. Click on About and then Run Diagnostic Tool.
- Perform the following options:
- Exploit Mitigation
- Perform the following options:
- Reboot the computer
- If the detection is valid it will trigger again. However, this initial reboot may resolve the issue.
- Do nothing, the application will continue to be blocked
- Turn off Exploit Mitigation in the policy to prevent the detection. (You may want to limit this to the affected computer/s).
- Set an exclusion for the application under System Settings | Exploit Mitigation Exclusions.
- Reboot the computer
- Open a support ticket and provide the following information:
- Information on the application triggering the detection.
- The output of the Sophos Diagnostic Utility.
Note: This Utility can be launched from the Sophos Endpoint user interface. Click on About and then Run Diagnostic Tool.
- Perform the following options:
Related information
Article appears in the following topics
Was this article helpful?
That’s Great!
Thank you for your feedback
Sorry! We couldn't be helpful
Thank you for your feedback
Feedback sent
We appreciate your effort and will try to fix the article