What's new in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.3

Oct 7, 2014
  • NEW FEATURES:
  • Sophos Anti-Virus:
  • The threat detection engine has been updated.
  • Device Control:
  • The following devices have been added to the list of secure removable storage devices:
  • BlockMaster SafeXs v4.7.4 secure USB flash drive
  • SafeToGo hardware-encrypted USB flash drive
  • Imation IronKey Basic D250 USB flash drive
  • Kingston's DataTraveler Vault Privacy 3.0 USB flash drive
  • DataLocker Sentry FIPS 140-2 Drive
  • Intel Centrino Wireless Bluetooth Adapter has been added to the list of bluetooth interfaces.
  • RESOLVED ISSUES:
  • Sophos AutoUpdate - Fixed an installation and upgrade issue that occurred following the release of Microsoft Security Update KB2918614.
  • Sophos Management Communications System - Windows 8.1 and Windows Server 2012 R2 are now correctly reported to the Cloud console.
  • Sophos Anti-Virus:
  • Fixed: Slow startup on a Windows 8 tablet.
  • Fixed: Email alerting settings for right-click scanning do not change when the global email alerting settings are changed.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.9 (Oct 7, 2014)

  • What's new:
  • The threat detection engine and threat data have been updated.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.8 (Oct 7, 2014)

  • Sophos Anti-Virus:
  • The threat data have been updated.
  • Fixed issues:
  • Sophos Anti-Virus:
  • The Sophos Anti-Virus driver installation fails if the RunOnce system registry key is missing.
  • Real Player streaming plugin fails to load over an RTSP connection when Download Scanning is enabled.
  • Sophos Client Firewall:
  • In an environment with Check Point VPN and Sophos Client Firewall, intermittent issues occur with location awareness, where the location fails to change to "both" and remains set to "secondary".
  • During upgrade from Sophos Client Firewall 2.5 to Sophos Client Firewall 2.9, the Sophos Client Firewall 2.5 driver is not disabled, resulting in a loss of network connectivity on network computers.
  • The firewall installer process should be modified to roll back the installation should any part of the firewall installation be detected to fail, as an incomplete installation can in some cases affect TCP/IP communication on the target PC.
  • Messaging between the Sophos Client Firewall processes should have tighter security.
  • Location awareness issue in combination with Device Control. When a laptop with Sophos Client Firewall and Device Control option Block bridged enabled is undocked and switches from an Ethernet connection to a wireless connection, the firewall location remains set to "primary" until the laptop is docked, connected to an Ethernet network, and the wireless adapter is disabled. Then the location switches to "secondary" location. DNS timeouts occur in the trace logs.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.7 (Oct 7, 2014)

  • Competitor Removal Tool:
  • The Sophos Competitor Removal Tool integrated with Sophos Endpoint Security and Control (iCRT) can now detect the following software:
  • Kaspersky Anti-Virus 6.0 for Windows Servers Enterprise Edition, 32-bit version (in addition to the 64-bit version which was added previously)
  • ESET NOD32 version 5.0.2126, both 32-bit and 64-bit
  • Device Control:
  • IronKey Enterprise D250 4GB flash drive has been added to the list of secure removable storage devices.
  • Sophos Anti-Virus:
  • The threat detection engine and threat data have been updated.
  • Fixed issues:
  • The Sophos Competitor Removal Tool integrated with Sophos Endpoint Security and Control (iCRT) cannot uninstall the anti-virus software ESET NOD32 (x64) 4.0.474.0.
  • Sophos Device Control generates multiple alerts in Enterprise Console for a single device every time it is plugged in.
  • Antivirus:
  • Sophos Anti-Virus doesn't detect threats in all files when certain local security restrictions are set on an endpoint, for example, when access to a file containing a threat is denied to everyone.
  • When Sophos Web Intelligence (SWI) is enabled, some endpoints fail to access the SonicWALL firewall authentication page in Internet Explorer.
  • Web sites fail to load correctly on some endpoints when Sophos Web Intelligence (SWI) is enabled and an endpoint is connected to the internet through the IPFire firewall.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.6 (Oct 7, 2014)

  • New in this release:
  • Competitor Removal Tool:
  • The Sophos Competitor Removal Tool integrated with Sophos Endpoint Security and Control (iCRT) can now detect the following software:
  • AVAST Endpoint Protection Suite 7.0
  • Microsoft Security Essentials 4.1
  • The threat detection engine and threat data have been updated.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.4 (Oct 7, 2014)

  • New in this release
  • Sophos AutoUpdate:
  • A number of security enhancements of the updating process have been implemented in this release.
  • Custom configuration files added to a CID using the ConfigCID utility are now digitally signed when added to a CID. If the files are subsequently tampered with, they are rejected during an update.
  • Added protection against buffer overflow attacks and denial-of-service attacks on a computer or network.
  • Device Control:
  • The following USB flash drives have been added to the list of secure removable storage devices:
  • IronKey Basic D200
  • Kanguru Defender v2 8GB
  • The threat detection engine and threat data have been updated.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.3 (Oct 7, 2014)

  • New in this release:
  • The threat detection engine and threat data have been updated.
  • Fixed issues:
  • This is a threat detection engine and threat data release only. No issues have been fixed in this release.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.2 (Oct 7, 2014)

  • New in this release:
  • The threat detection engine and threat data have been updated.
  • Fixed issues:
  • Sophos Anti-Virus:
  • (DEF84016) In the Italian version, the links to the Sophos website, security information and technical support go to English webpages.
  • Sophos AutoUpdate:
  • (DEF83871) After upgrading Sophos Anti-Virus, an unexpected reboot request sometimes appears in Sophos Enterprise Console.
  • (DEF75436) Sophos AutoUpdate installer stops Windows Indexing Service when excluding the AutoUpdate Cache folder from indexing for Windows Search.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.1 (Oct 7, 2014)

  • New in this release:
  • The threat detection engine and threat data have been updated.
  • Fixed issues:
  • Sophos Anti-Virus:
  • (DEF83496) The "Sophos Anti-Virus" service can be deadlocked if the on-access scanning checksum file is locked.
  • (DEF80504) The process ALMon can terminate unexpectedly if a desktop message is displayed when Sophos Anti-Virus starts to update itself.
  • (DEF82646) Each time that the "Sophos Anti-Virus" service is restarted, Visual Studio 2010 rebuilds all projects.
  • (DEF83635) The web protection LSP is incompatible with the LSP that is used by Microsoft Intelligent Application Gateway. To resolve this, the web protection LSP is not installed.
  • (DEF83548) On Windows Vista or later, some websites take a long time to load with the "Sophos Web Intelligence Service" service running.
  • (DEF84788) In the Traditional Chinese version, on the Product information page, "Components" is translated as "Computer".
  • (DEF84798) In the Italian version, the title of a toast notification is truncated.
  • (DEF84016) In the Italian version, the links to the Sophos website, security information and technical support go to English webpages.
  • Web control:
  • (DEF82585) Full Web Control stops images in an iGoogle gadget from being displayed.
  • (DEF83522) Inappropriate Website Control allows adult content to be loaded in some circumstances.
  • (DEF81690) Rules in the Full Web Control policy that check for Group fail in some circumstances.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.2.0 (Oct 7, 2014)

  • New in this release:
  • Support for Windows 8 and Windows Server 2012
  • Endpoint Security and Control now uses toast notifications instead of balloon notifications to display messages on screen
  • If Sophos Anti-Virus cleans up a threat that affects a Windows Store app, it marks the app as tampered with. This causes Windows to offer the user the ability to re-download and re-install the app
  • Sophos Anti-Virus can now scan locked files during an on-demand scan.
  • The performance of Sophos Anti-Virus during a local, or network, file copy operation has been improved.
  • The threat detection engine and threat data have been updated.
  • Fixed issues:
  • Sophos Anti-Virus:
  • DEF81600) The Sophos Anti-Virus log repeatedly shows that the file C:\Documents and Settings\All Users\Application Data\Sophos\Web Control\Activity\current could not be accessed during an on-demand scan.
  • DEF82722) On Windows Server 2008 Core, updating of Endpoint Security and Control takes a long time.
  • DEF84125) In the Spanish version, the Endpoint Security and Control Help contains some links that are in English.

New in Sophos Endpoint Security and Control (formerly Sophos Anti-Virus) 10.0 (Oct 7, 2014)

  • The threat detection engine and threat data have been updated.
  • Fixed: Vulnerability in Microsoft Detours software used in Sophos Anti-Virus (DEF93356).