which version of exchange is this please?
Could you check your send connector to see if it is sending mail directly (DNS lookups) or sending it to a 'smarthost' (the sophos box)
If its sending to a smarthost (sophos IP) just change it to direct DNS and it will bypass the box completely.