Sophos Anti-Virus\Endpoint Security and Control
Remove Sophos Client Firewall first
7.x MsiExec.exe /X {034759DA-E21A-4795-BFB3-C66D17FAD183}
9.0 MsiExec.exe /X {9ACB414D-9347-40B6-A453-5EFB2DB59DFA} REBOOT=SUPPRESS
9.5 MsiExec.exe /X {9ACB414D-9347-40B6-A453-5EFB2DB59DFA} REBOOT=SUPPRESS
Sophos Remote Managment
Not to be performed on SUM / Console installs / Relays
3.0 MsiExec.exe /X {FF11005D-CBC8-45D5-A288-25C7BB304121}
3.1 MsiExec.exe /X {FED1005D-CBC8-45D5-A288-FFC7BB304121}
3.2 MsiExec.exe /X {FED1005D-CBC8-45D5-A288-FFC7BB304121}
How to I manually remove any remnant services?
Note: A reinstall and then uninstall should be attempted first.
SAU
%PROGRAMFILES%\Sophos\AutoUpdate\ALSvc.exe /unregserver
%PROGRAMFILES%\Sophos\AutoUpdate\ALMon.exe /unregserver
SAV
%PROGRAMFILES%\Sophos\Sophos Anti-Virus\SavService.exe /unregserver
%PROGRAMFILES%\Sophos\Sophos Anti-Virus\SavAdminService.exe /unregserver
%PROGRAMFILES%\Sophos\Sophos Anti-Virus\sdcservice.exe /unregserver
NOTE: (Sophos Device Control) sdcservice.exe will also remove itself if a blank device control policy is pushed out to the endpoints.
The following commands are for setup.exe used in Endpoint Security version 9.7
-mng yes|no yes Is the computer to be managed?
-scf Install Sophos Client Firewall (Windows 2000+)
-patch http://<MANAGEMENTSERVERADDRESSr> Installs Sophos Patch agent and specifies the address of the Sophos management server. Only available with version 10+.
-nac http://<NACSERVERADDRESS> Installs network access control and specifies the address of the Sophos NAC server
-crt R Removes third-party security software automatically
-updp <path> <location of setup.exe> Location of the primary CID from where the computer will get its updates.
-user<username> blank Account for accessing the primary CID location.
-pwd <password> blank Password for the above account.
-ouser <username> Obfuscated account name for accessing the CID location, if required.
-opwd <password> Obfuscated password.
-mngcfg <RMS config path> <location of Setup.exe> Location of the RMS configuration files.
-compname <computername> Specify a computer name to override the one used in Windows. This name will appear in Enterprise Console.
Notes:
The name must be shorter than 31 characters.
If you would like to include a space, it must be enclosed in "double quotes".
-compdesc <computerdescription> Specify a computer description to override the one used in Windows. This description will appear in Enterprise Console.
-domain <domainname> Specify a domainname to override that on the client. This name will appear in Enterprise Console/ Manager.
-g "\<nameofserver>\<Groupname>" Specifies the group (set up in Enterprise Console/ Manager) to which the computer will belong.
The path:
is case sensitive
must not end in a backslash
must include the management server
must be enclosed in "double quotes" if switches (backslashes) are used
Example:
"\[SecServerName]\TopLevelGroup\Group"
-rlogin
Start reinstallalation on Windows 95/98/Me computers from login scripts.
-login
Start installation on Windows 95/98/Me computers from login scripts.
-s No Perform installation silently.
-ni No Perform a non-interactive installation.
-? Display command line parameter help.
Be wary of the included firewall with Endpoint 9.7, it will by default block Citrix, Outlook, and any other 3rd party applications that are not approved.
setup.exe -s -ni -crt
The script above installs Endpoint Security silently with no user interaction all while silently uninstalling any existing antivirus software.
This website uses cookies.
By continuing to use this site and/or clicking the "Accept" button you are providing consent
Quest Software and its affiliates do NOT sell the Personal Data you provide to us either when you register on our
websites or when you do business with us. For more information about our
Privacy Policy and our data protection
efforts, please visit
GDPR-HQ