Sophos

Online support

Product maintenance

Contact support

Support services

Download Free hard drive encryption - Download a trial of SafeGuard Easy

Sophos Anti-Virus for Windows 2000+: 'alert only' mode

The 'alert only' behavioral rule in Sophos Anti-Virus for Windows 2000+, version 7 and above, warns of files that are suspected to be malicious. However, as the identification has not been confirmed by a precise identity, the files are not automatically prevented from running, or automatically deleted.

Note: This only happens in 'alert only' mode. In all other modes, suspicious files will be blocked.

What to do

  • If you believe the file to be legitimate, or are not sure, please send us a sample.
  • To remove files detected by alert only rules, do as follows.
    1. Open Sophos Anti-Virus.
    2. Open Quarantine Manager.
    3. Select the item in question.
    4. Delete or authorize it.

Technical details

The 'alert only' rules scan all intercepted files, but if they trigger against a file, although an entry will be added to Quarantine Manager, the file will be allowed to continue running.

If you need more information or guidance, then please contact technical support.

  • Protect sensitive data from unauthorized use
  • Encrypt data, hard drives and removable media
  • Work uninterrupted with encryption on demand