{"id":22164,"date":"2016-06-14T12:00:00","date_gmt":"2016-06-14T11:00:00","guid":{"rendered":"https:\/\/www.avanet.com\/blog\/sophos-clean-the-sidekick-among-virus-scanners\/"},"modified":"2022-07-22T14:24:40","modified_gmt":"2022-07-22T13:24:40","slug":"sophos-clean-the-sidekick-among-virus-scanners","status":"publish","type":"post","link":"https:\/\/www.avanet.com\/en\/blog\/sophos-clean-the-sidekick-among-virus-scanners\/","title":{"rendered":"Sophos Clean &#8211; the sidekick among virus scanners"},"content":{"rendered":"\n<p>Sophos has what feels like 20 different AV solutions in its portfolio. Now another new product is added. With Sophos Clean, Sophos is launching a product that is intended more to <strong>complement<\/strong> existing antivirus solutions than to usurp sole world domination in the endpoint space.<\/p>\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p>In this blog post, I would like to introduce Sophos Clean in more detail and find out whether this product has any raison d&#8217;\u00eatre at all.<\/p><\/blockquote>\n\n<p><strong>Update:<\/strong> <em>Sophos Clean has been integrated with <a href=\"https:\/\/www.avanet.com\/en\/shop\/sophos-central-intercept-x-essentials\/\">Sophos Central Intercept X<\/a> and can no longer be purchased as a standalone product. Sophos Clean is officially End of Sale.<\/em><\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-kurze-vorgeschichte\">Brief history<\/h2>\n\n<p>Sophos acquired Netherlands-based <strong>SurfRight<\/strong> for nearly $32 million on Dec. 15, 2015. With its <strong>HitmanPro<\/strong> product, SurfRight had one of the leading products in the fight against so-called next-generation malware (zero-day exploits, rootkits, Trojans, spyware and more). So Sophos has repackaged HitmanPro and now offers the product under the name Sophos Clean.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-was-ist-sophos-clean\">What is Sophos Clean?<\/h2>\n\n<p>As mentioned earlier, Sophos Clean is designed to <strong>complement<\/strong> already installed antivirus software and provide a professional <strong>second opinion<\/strong> about suspicious files. So Sophos Clean wants to be the best buddy or even &#8220;sidekick&#8221; of your existing virus scanner and help it do its job. Sophos Clean is very thorough and checks all forms of malware, including viruses, Trojans, rootkits, worms, spyware, fake software and keyloggers.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-spezialist-fur-zero-day-bedrohungen-und-ransomware\">Specialist for zero-day threats and ransomware<\/h2>\n\n<p>It is important for next-generation protection not to rely on signatures. Zero-day threats and certain ransomware such as CryptoLocker can only be effectively found through built-in features such as exploit prevention, behavioral analysis or heuristics.<\/p>\n\n<p>That&#8217;s where Sophos Clean comes in. The little &#8220;virus professor&#8221; works without signatures and uses progressive behavioral analysis, forensics, and collective intelligence to detect and remove zero-day exploits, rootkits, Trojans, spyware and other polymorphic malware, annoying cookies, and adware. This results in fewer false positives, which other signatureless next-generation anti-malware tools have problems with.<\/p>\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\"><p><strong>Polymorphic malware<\/strong> are viruses that come in x-different versions, but actually all do the same thing. They change their &#8220;shape&#8221; in order to evade current virus definitions. This technique is very often used in the current ransomware.<\/p><\/blockquote>\n\n<h2 class=\"wp-block-heading\" id=\"h-keine-installation-notwendig\">No installation necessary<\/h2>\n\n<p>What&#8217;s pretty cool is that Sophos Clean can be used as an on-demand scanner and doesn&#8217;t necessarily need to be installed on the system. Thus, the 11 MB EXE file can also be copied to a USB stick and executed on an infected Windows computer. In a situation where malware has tampered with the installed antivirus software and its updates, such a USB stick is particularly useful. So you always have an effective next-generation virus scanner in your pocket.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-systemvoraussetzungen\">System requirements<\/h2>\n\n<p>Sophos Clean works smoothly alongside your existing antivirus software. Whether this is McAffee, Kaspersky, Symantec, Avast or any other endpoint protection. Sophos Clean puts minimal load on the computer and a quick scan is completed in less than 5 minutes.<\/p>\n\n<p>Windows 7, 8, 8.1 and 10 are supported as operating systems (32-bit and 64-bit). The computer needs at least 1 GB of ram and must have access to the Internet so that unknown files can be uploaded to SophosLabs and analyzed during a scan.<\/p>\n\n<h2 class=\"wp-block-heading\" id=\"h-sophos-clean-im-praxistest\">Sophos Clean in practice<\/h2>\n\n<p>In the following video, you can see Sophos Clean in action alongside Avast Antivirus. The video is intended to show that Sophos Clean, after scanning with Avast Antivirus, finds even more threats that would not have been noticed otherwise. Among the findings of Sophos Clean are Trojans&#8230;<\/p>\n\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\"><div class=\"wp-block-embed__wrapper\">\n<iframe loading=\"lazy\" title=\"Sophos Clean - Hands-on\" width=\"1290\" height=\"726\" src=\"https:\/\/www.youtube.com\/embed\/1ciuZNAO5ec?feature=oembed\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" allowfullscreen><\/iframe>\n<\/div><\/figure>\n\n<h2 class=\"wp-block-heading\" id=\"fazit\">Conclusion<\/h2>\n\n<p>In the introduction to this blog article, I raised the question of whether Sophos Clean has its raison d&#8217;\u00eatre. After some tests and writing this article, I can clearly answer <strong>yes<\/strong> to this question. Sophos Clean, as I said, is not intended as an alternative, but much more as a complement to an existing solution. Sophos Clean did an excellent job of this in our tests and we at Avanet can really recommend this product!<\/p>\n\n<h3 class=\"wp-block-heading\" id=\"kleiner-wer-muts-trop-fen\">Small drop of bitterness<\/h3>\n\n<p>What Sophos Clean lacks a bit from my point of view is the central management console that one is used to from Sophos Central Endpoint Protection. For the distribution of the software on several clients, you have to come up with something yourself.<\/p>\n\n<h3 class=\"wp-block-heading\" id=\"sophos-clean-in-kombination-mit-der-endpoint-protection\">Sophos Clean in combination with Endpoint Protection<\/h3>\n\n<p>For those already using <a href=\"https:\/\/www.avanet.com\/en\/shop\/sophos-central-intercept-x-essentials\/\">Sophos Central Endpoint Protection<\/a>, we have one more piece of news, but it should be taken with a grain of salt. A little birdie told us that Sophos is working on two more models called <strong>Intercept<\/strong> and <strong>Ultimate<\/strong> in addition to the Standard and Advanced variants in the future. It is planned that Sophos Clean technology will be integrated into Endpoint Protection in the future.<\/p>\n\n<p><em><strong>Update<\/strong>: Meanwhile, Sophos has integrated Sophos Clean technology into its endpoint protection with Sophos <a href=\"https:\/\/www.avanet.com\/en\/shop\/sophos-central-intercept-x-essentials\/\">Central Intercept X<\/a>.<\/em><\/p>\n\n<p><em><strong>Update<\/strong>: <a href=\"https:\/\/www.avanet.com\/en\/shop\/sophos-central-intercept-x-essentials\/\">Sophos Central Endpoint Protection<\/a> is no longer available as a standard or advanced variant. Sophos has restructured its <a href=\"https:\/\/www.avanet.com\/en\/blog\/sophos-central-endpoint-protection-name-change-and-end-of-sale\/\">endpoint division somewhat<\/a>.<\/em><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Sophos has what feels like 20 different AV solutions in its portfolio. Now another new product is added. With Sophos Clean, Sophos is launching a product that is intended more to complement existing antivirus solutions than to usurp sole world domination in the endpoint space. In this blog post, I would like to introduce Sophos [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":21238,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[277],"tags":[],"class_list":["post-22164","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized"],"blocksy_meta":[],"acf":[],"_links":{"self":[{"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/posts\/22164","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/comments?post=22164"}],"version-history":[{"count":0,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/posts\/22164\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/media\/21238"}],"wp:attachment":[{"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/media?parent=22164"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/categories?post=22164"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.avanet.com\/en\/wp-json\/wp\/v2\/tags?post=22164"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}