Customers might be unable to connect with us via the Sophos Malaysia Support Hotline number. Our teams are actively working on a fix. In the interim, we request customers to use the backup hotline number - +65 3157 5922 (Singapore) or raise a support request at https://support.sophos.com/.

Help us enhance your Sophos Community experience. Share your thoughts in our Sophos Community survey.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos MSI Failed

Hi SOPHOS Community,

I have this challenge with Sophos installation. Hope someone here could help me resolve this MSI Failed error. I have tried several solutions such as the following but none of these resolved the problem. Some solutions already came from Support Asia but still unsuccessful.

Option 1:

Update Windows Installer.

Retry Install

Still failed with same error

Option 2:

1) Go into Add/Remove Programs

2) Remove Sophos AutoUpdate (if listed and you can)

3) Remove Sophos RemoteManagement System (if listed and you can)

4) Remove Sophos Anti-Virus (if listed and you can)

5) Do Not Reboot

6) Go into Regedit6) Make a backup of your registry

7) Remove HKLM/Software/Sophos

8) Remove HKCU/Software/Sophos

9) Remove HKLM/System/CurrentControlSet/Services/and look for Interchk, SAV, Sophos, and Sweep and remove these keys

10) Remove C:\Program Files\Sophos

11) Remove C:\Documents and Settings\All Users\Application Data\Sophos

12) Remove C:\Windows\Temp or C:\WinNt\Temp and remove any Sophos files

13) Remove any SophosSAU from your local users and groups

14) Download the MSI Cleanup utility available from Microsoft to clear the install of anything related to Sophos. This can be found by doing a google search for “Windows Cleanup Utility”

15) After the MSI cleanup utility is installed run that and remove anything Sophos that is listed

16) Reset the security permissions back to Microsoft defaults. You can reset the registry permission back to Microsoft defaults by following their instructions as mentioned at hxxp://support.microsoft.com/kb/313222.
If you choose not to follow these instructions you at a minimum can set the permissions as follows:


A) Open regedit.exe

B) Expand HKEY_LOCAL_MACHINE.

C) Right click on SOFTWARE, and click permissions.
Click Add and add the following local groups:Administrators Full ControlCREATOR OWNER SpecialPower Users Read, SpecialSYSTEM Full ControlUsers Read
These should all have the appropriate permissions by default, you may see Powers Users only have special, which is fine. Verify these permissions propagated down to the child keys especially HKEY_LOCAL_MACHINE\Software\Classes key

17) Reboot
18) Run the MSI Cleanup utility to confirm that nothing Sophos is listed
19) Re-install Sophos Anti-Virus if you wish to do so at this time.


Same Error Here

Option 3:

1) This issue is usually caused (or Maybe) by group policy. 
Check out the Software Restriction Policies which apply to your account and disable it if possible
or

2) There is also a registry key:HKLM\Software\Policies\Microsoft\Windows\InstallerName - DisableMSI Type - REG_DWORD 0 = enable(originally set to - 0 = disable)

Created the registry DWORD Still Same Error

Option 4:

It could be possible that the user is a domain user only and he is also a member of the local group of administrators.

Also checked if there is any policies blocking the msi installer.
Computer configuration > Administrative Template > Windows Components > Windows Installer > Disable browse dialog box for new source=enabled

Tried Different Domain Admin Account but still unsuccessful.

If someone have experienced this before and was able to resolved it, please kindly share it to us.

We are trying to install this in a critical server WINDOWS 2003.

Thank you very much Sophos Community.

Regards,

Lance Arzadon

:13783


This thread was automatically locked due to age.
  • Hi,

    What is the actual error?  Which component of the endpoint software is failing to install?  Is it:

    • SAV - Sophos Anti-Virus,
    • SCF - Sophos Client Firewall,
    • SAU - Sophos AutoUpdate,
    • RMS - Remote Management System?

    Once determined, what does the MSI log say for the component.
    Note: the install logs of SCF and SAV have an accompanying custom action log file.

    For example if it is the SAV component, then there are 2 log files which are a pair:

    1. Sophos Anti-Virus Install Log_<timestamp>.txt
    2. Sophos Anti-Virus CustomActions Log_<timestamp>.txt

    If AutoUpdate is installing SAV, which would be the case during a managed install you will find these in \windows\temp\.

    Regards,

    Jak

    :13831
  • The component that cannot be installed is the SAV.

    Im going to give you the log file, let me gather it first.

    Thank you,

    Lance

    :13839