HKU Computer Centre HKU Computer Centre
Beck to home page   
 

FAQ on Using Sophos Endpoint Security and Control
(formerly Sophos Anti-virus)

Q1. How does SAV get automatic update of virus patterns?

Q2. How can I configure SAV to auto clean up items contain a virus?

Q3. How do I ask SAV to cleanup a virus-infected file after it is found?

Q4. How can I configure SAV to scan a floppy disk?

Q5. How can I configure SAV to scan a drive or only subdirectory a drive ?

Note: Please refer to Computer Centre FAQ page for most update information.


Q1. How does SAV get automatic update of virus patterns?

A1. SAV will automatically update the virus definitions on Windows start-up.

The SAV Installation program downloadable from the HKU Portal has been pre-configured to perform automatic update every 5 hours (i.e. 300 minutes) from a local HKU update server.

If you wish to do update explicitly, right click "Sophos Endpoint Security and Control" icon  on the Windows task bar and select "Update now"


Q2. How can I configure SAV to auto clean up items contain a virus?

Note: User of Windows XP/2003/Vista/2008/7 computers must logon as Administrator (or have Administrator's rights) and member of SophosAdministrator Group to configure Sophos Anti-Virus successfully.

Start Sophos Anti-Virus program by click

          Windows "Start" button => "Programs" => "Sophos" => "Sophos Endpoint Security and Control" => "Sophos Endpoint Security and Control".

  1. Click "Configure anti-virus and HIPS" button.
  2.  Click "On-access scanning".
          

3.   Click "Cleanup" Tab and in the "Virus/spyware" select "Automatically clean up items that contain virus/spyware" and select "Deny access and move to:" if you want to move the infected files to a default location.  In the "Suspicious files", select "Deny access only

          

     Note:   If infected file could not clean up, it will be moved and quarantined in the default directory.

                For Windows XP: C:\Documents and Settings\All Users\Application Data\Sophos\Sophos Anti-Virus\INFECTED

               For Vista or Windows 7: C:\Program Data\Sophos\Sophos Anti-Virus\INFECTED 

4.    Click "OK" button to save the settings and close the configuration window.


Q3. How do I ask SAV to cleanup a virus-infected file after it is found?

A3.  Perform the following:

  1. Update Sophos Endpoint Security and Control by Right click "Sophos Endpoint Security and Control" icon  on the Windows task bar and select "Update now".
  2. Configure SAV to clean up virus file as shown in Q2.
  3. Click the "Scan my computer" icon to scan your PC again.

Q4. How can I configure SAV to scan a floppy disk?

A4. Perform the following:

Start the SAV program (e.g. click Windows Start button => Programs => Sophos => Sophos EndPoint Security and ControlAnti-Virus)

=> Click "Scans" icon then click "Set up a new scan" icon

=> Click and select the box next to "3 1/2 Floppy (A:)"

=> Click "Save and start" button to save the settings and start this scan


Q5. How can I configure SAV to scan a drive or only a subdirectory of drive?

A5: Do as follows to configure SAV to scan a subdirectory of drive C:

Start the SAV program (e.g. click Windows Start button => Programs => Sophos => Sophos Anti-Virus => Sophos Anti-Virus)
=> Click "Scans" icon then click "Set up a new scan" icon

=> Click box next to the drive or click the "+" box next to the Local disk to expand the directory.

=> Click and select the subdirectory (e.g. "backup" in the screen capture below)

=> Click "Save and start" button to save the settings and start this scan.


For more information and details, please refer to Endpoint Security and Control Help manual.

 
 
Copyright 2012 Computer Centre, The University of Hong Kong
Comments to ithelp@hku.hk