Service Request Ticket - # 73576

Service Request Information

CONTACT Name Franklin, Brittany   View open tasks   View tasks from last 30 days   Schedule Change Contact Date Sep 11, 2019 09:36 AM
Department University Computing Solutions Phone 89267
Location Email newmanb@wou.edu Request for more information Send 'Keeping in touch' email Send 'I'm thinking of you' email

SR INFO Type WOU #
Priority Equipment Type
Status Flagged
Description

Computer Edit WOU # 20130903[Edit Inv] (opens in a new window) Bldg/Room OFF PDR
Service Tag 43S9V12 Description Dell OptiPlex 9020 SFF, i7-4770(quad 3.4GHz, 8MB)
Serial No. 43S9V12 Location PDR

CPU Intel Core i7-4770(Quad core HT, 3.4GHz, 8MB)


OS Windows 10 Enterprise 64bit Software Microsoft Office Pro Plus 2013 downgraded to 2010 from P0094150

Wired NIC 34:17:EB:A5:B6:82


TECHS Submitted by Brittany Franklin Contact franklinb@wou.edu 89267
Primary Technician Contact kreynoso15@wou.edu 88925

Tracking

Entered by Date Memo
Katherine Reynoso
Email

Public

Entered by Date Memo
Katherine Reynoso Sep 12, 2019 09:25 AM
Status changed from (1) Pending to (5) Completed
Add Attachment
Katherine Reynoso Sep 12, 2019 09:25 AM
Acknowledged threat.
Add Attachment
Katherine Reynoso Sep 12, 2019 08:05 AM
Ran a scan.
Add Attachment
Brittany Franklin Sep 11, 2019 09:36 AM
Task reassigned to Katherine Reynoso.
Add Attachment
Brittany Franklin Sep 11, 2019 09:36 AM


This is from the email I got from Sophos:


Sophos Central Event Details for Western Oregon University

What happened: We could not clean up a threat.

Where it happened: W20130903

Path: C:\Users\kreynoso15\AppData\Local\Microsoft\Windows\INetCache\IE\F3BZG9QT\046d-c52b-4041-ui_x32[1].exe

What was detected: ML/PE-A

User associated with device: MASH\kreynoso15

How severe it is: High

What Sophos has done so far: We attempted to clean up a threat.

What you need to do: In the Sophos Central Admin console, go to the Alerts page and find the threat alert. Click on the threat name to see details and cleanup advice on the Sophos website. Then go to the affected computer and clean up the threat manually.
Add Attachment