Service Request Ticket - # 76580

Service Request Information

CONTACT Name Morse, Scot   View open tasks   View tasks from last 30 days   Schedule Change Contact Date Nov 02, 2020 10:49 AM
Department Computer Science Division Phone 88921
Location Email morses@wou.edu Request for more information Send 'Keeping in touch' email Send 'I'm thinking of you' email

SR INFO Type WOU #
Priority Equipment Type
Status Flagged
Description

Laptop Edit WOU # 20171236[Edit Inv] (opens in a new window) Bldg/Room ITC 310C
Service Tag Description Apple MacBook Pro 15in 2.8GHzQuad i7, SpcGry #MPTR
Serial No. C02WT06XHTD5 Location Scot Morse, Professor, MIS Program Coordinator

CPU Intel Core i7(2.8GHz quad, 6MB L3 cache)


OS MAC OS X 10.13 (High Sierra) Software MSDesktopEdOffice201*MAC XXXX2017006552;

Wireless NIC 88:E9:FE:72:AC:17


Bluetooth NIC 88:E9:FE:6C:EC:C4


TECHS Submitted by Stephanie Magee Contact smagee15@wou.edu 88925
Primary Technician Contact ellism@wou.edu 88629

Tracking

Entered by Date Memo
Michael Ellis
Email

Public

Entered by Date Memo
Michael Ellis Nov 04, 2020 09:17 AM
Status changed from (1) Pending to (5) Completed
Add Attachment
Michael Ellis Nov 04, 2020 09:17 AM
Emailed user.  Closing call.
Add Attachment
Megan Thibeault Nov 04, 2020 08:59 AM
Task reassigned to Michael Ellis.
Add Attachment
Megan Thibeault Nov 04, 2020 08:59 AM
Same with this one.

This isn't on the machine it's on an external device 
on a backup. He would have to wipe his external 
device and backup. 
Add Attachment
Stephanie Magee Nov 02, 2020 10:49 AM
****This is an email****
Sophos Central Event Details for Western Oregon 
University

What happened: We detected a potentially 
unwanted application (PUA) on a computer. PUAs 
are not malicious but are often considered 
unsuitable for corporate networks.

Where it happened: W20171236

Path: 
/Volumes/BACKUP_MORS/Backups.backupdb/morses 
MacBook Pro/2017-10-19-160514/Macintosh 
HD/Users/morses/Library/Application 
Support/Spigot/ApplicationManager

What was detected: SpiGot

User associated with device: W20171236\morses

How severe it is: Medium

What Sophos has done so far: We blocked access 
to the PUA.

What you need to do: In the Sophos Central 
Admin console, go to the Alerts page. Select 
the PUA alert. To remove the PUA, click Clean 
up PUA(s). If you want to let it run, click 
Authorize PUA(s). Authorize PUAs will apply to 
all your computers, not just the one in this 
alert.

Add Attachment