Search the Community
Showing results for 'Quick Launch Keyboard'.
-
if there are many undetectable hashes... use the "Application Control" tool (as described above) to block launch attempts. the user cannot independently update the "bases" for the components so that they would detect them, this is the work of the Kaspersky Lab specialists. Also, if you have the appropriate licenses, for example, EDRO, KATA/KEDR, you can create blocking rules for hash amounts that your specialists have scouted using these products. Also, Sandbox products from the laboratory will help you study and automatically block new, unknown malware if they are marked as malware during the analysis process.
-
Had to disable OSK, doesn't work, cursor gets stuck
Bav replied to Bav's topic in Kaspersky: Basic, Standard, Plus, Premium
on screen keyboard Kaspersky standard 21.14.5.462 -
Had to disable OSK, doesn't work, cursor gets stuck
Bav replied to Bav's topic in Kaspersky: Basic, Standard, Plus, Premium
I just disabled every single other Edge web extension I use, in case one of them was the problem, restarted edge, with ONLY Kaspersky extension enabled, and the keyboard just doesn't work. Even if I manage to get it over a letter and press it, nothing is entered either. What's the point of an anti keylogging function if it is broken? -
Hi... as per title. Latest version of Kaspersky standard, installed today. I rebought it as all the other apps I tried were not as good, and I decided I will just put up with the slight internet browsing delay. In any case, I am not too concerned about this, as I use Keyscrambler Pro which encrypts absolutely everything I type into Edge anyway, and it works brilliantly, so I don't really need the Kaspersky keyboard. But the issue is there so it's worth reporting, and before anyone says anything, I completely uninstalled Keyscrambler in case that was the issue, it wasn't, so I reinstalled it. What is happening is, as soon as I open Kasperksy OSK, the cursor just gets stuck. I can freely move to and choose letters as I should be supposed to. In fact, it's even an effort to close it, as you just have to keep moving the cursor until you land on the X by luck (i.e. keep moving the mouse in random increments till you land on the X by chance). I had this issue many years back with a much older PC and Kaspersky. But what bothers me this time, is that when I first tried Kaspersky out about 1 month back, it worked on this very computer.. and this is a fresh install of windows 11. Just drivers and windows updates and kaspersky so far, and besides keyscrambler no other apps at all yet! So it doesn't make sense. Perhaps a recent Kaspersky update broke it again? It seems that others have this issue, so would appreciate some opinions on what it might be. Thanks!
-
Weird (windows 11?) activities
iWoodGames replied to iWoodGames's topic in Virus and Ransomware related questions
I forgot to mention, I ran full and quick scans from the moment I installed kaspersky, it found nothing. But: I'm pretty sure I've mentioned these ^ in a diferent post, I sented files to the support team, they told me not to worry, but that was almost a year ago. -
How to disable hardware virtualization?
KarDip replied to vterra8871's topic in Kaspersky Anti-Ransomware Tool
Hello @vterra8871 As well as above posts. Try this Script To disable hardware virtualization in Windows, you would typically need to access your computer's BIOS (Basic Input/Output System) or UEFI (Unified Extensible Firmware Interface) settings. These settings can vary depending on your computer's manufacturer and model, but the general process is as follows: 1. **Restart Your Computer**: Begin by restarting your computer. 2. **Access BIOS/UEFI Settings**: As your computer starts up, there is usually a specific key or combination of keys you need to press to access the BIOS or UEFI settings. This key is often displayed on the screen briefly during startup. Common keys include Del, F2, F10, or Esc. Press the appropriate key(s) repeatedly until you enter the BIOS or UEFI interface. 3. **Navigate to Virtualization Settings**: Once in the BIOS/UEFI settings, use the keyboard to navigate through the menus. Look for a section related to "Virtualization," "Advanced CPU Configuration," "CPU Features," or something similar. The location and naming of this section can vary, so refer to your computer's manual or online resources if needed. 4. **Disable Hardware Virtualization**: Within the virtualization settings, you should find an option to enable or disable hardware virtualization. This option might be named "Intel Virtualization Technology," "VT-x," "AMD-V," or something similar, depending on your CPU manufacturer. Use the keyboard to select the option and disable it. 5. **Save Changes and Exit**: After disabling hardware virtualization, navigate to the "Save and Exit" or similar option in the BIOS/UEFI settings. Confirm that you want to save the changes and exit. Your computer will restart. Please note that the exact steps and options might differ based on your computer's hardware and BIOS/UEFI version. Additionally, disabling hardware virtualization may impact the performance of virtualization software like VMware, VirtualBox, or Hyper-V. Make sure you have a specific reason for disabling hardware virtualization and that you fully understand the implications. If you're not comfortable making changes in the BIOS/UEFI settings or are unsure about the consequences of disabling hardware virtualization, it's advisable to seek assistance from someone with experience or consult your computer's documentation. Remember that making incorrect changes in the BIOS/UEFI settings can potentially lead to system instability or inoperability, so proceed with caution and only make changes if you are confident in what you are doing. Thank you -
Malware removal mode: disabled
Axel92 replied to Axel92's topic in Kaspersky: Basic, Standard, Plus, Premium
I mean TeamViewer - Remote connectivity software Kaspersky has closed the scan for "Malware removal mode: disabled" by user but i don t do that. 5. Searching for keyboard/mouse/windows events hooks (Keyloggers, Trojan DLLs) Checking - disabled by user 6. Searching for opened TCP/UDP ports used by malicious software Checking - disabled by user 8. Searching for vulnerabilities >> Services: potentially dangerous service allowed: TermService (Remote Desktop Services) > Services: please bear in mind that the set of services depends on the use of the PC (home PC, office PC connected to corporate network, etc)! >> Security: administrative shares (C$, D$ ...) are enabled >> Security: anonymous user access is enabled >> Security: sending Remote Assistant queries is enabled I need information to activate them all, because they are disabled by the user, but I haven't done that, in the settings in Kaspersky it shows me that everything is ok, but AVZ, everything is off I try resetting to initial settings, but it's still the same. -
Hi, i just have a problem whit my kaspersky. I recently had a program installed on my computer via TW, but the antivirus was blocked/closed, looking for these programs. Since then the settings don't show that everything is OK, but in the AZV report through GSI it shows that everything is closed. Attention !!! Database was last updated 3/14/2023 it is necessary to update the database (via File - Database update) AVZ Toolkit log; AVZ version is 5.67 private build [14.03.2023 5:00:04] Scanning started at 06.08.2023 08:53:47 Database loaded: signatures - 9995, NN profile(s) - 2, malware removal microprograms - 23, signature database released 14.03.2023 04:00 Heuristic microprograms loaded: 417 PVS microprograms loaded: 10 Digital signatures of system files loaded: 654627 Heuristic analyzer mode: Maximum heuristics mode Malware removal mode: disabled Windows version is: 10.0.19045, "Windows 10 Home" (Windows 10 Home) x64, install date 05.08.2023 13:42:47 ; AVZ is run with administrator rights (+) System Restore: enabled 1. Searching for Rootkits and other software intercepting API functions 1.1 Searching for user-mode API hooks Analysis: kernel32.dll, export table found in section .rdata Analysis: ntdll.dll, export table found in section .text Analysis: user32.dll, export table found in section .text Analysis: advapi32.dll, export table found in section .text Analysis: ws2_32.dll, export table found in section .text Analysis: wininet.dll, export table found in section .text Analysis: rasapi32.dll, export table found in section .text Analysis: urlmon.dll, export table found in section .text Analysis: netapi32.dll, export table found in section .text 1.4 Searching for masking processes and drivers Checking not performed: extended monitoring driver (AVZPM) is not installed 5. Searching for keyboard/mouse/windows events hooks (Keyloggers, Trojan DLLs) Checking - disabled by user 6. Searching for opened TCP/UDP ports used by malicious software Checking - disabled by user 8. Searching for vulnerabilities >> Services: potentially dangerous service allowed: TermService (Remote Desktop Services) > Services: please bear in mind that the set of services depends on the use of the PC (home PC, office PC connected to corporate network, etc)! >> Security: administrative shares (C$, D$ ...) are enabled >> Security: anonymous user access is enabled >> Security: sending Remote Assistant queries is enabled Checking - complete Host="activation-v2.kaspersky.com", IP="195.27.252.50", Ping=Error (11010,0,0.0.0.0)
-
Hello Kas Today I attempted to login to my.kaspersky account on my PC, after finding I couldn't remove an application. So I attempted the PC Clean in my Total Kaspersky Application. I was then requested a password, so I used what has been installed via my browser cookies. I have Google Chrome, Windows Edge and Firefox browsers. I found that none of the browser's will open my Kaspersky account, so I reset my password which seemed to go well, using the Kaspersky Virtual Keyboard until I tried to login again, but I cannot get access on my PC, but I can login on my phone, just no where else. Am also being asked for a 'captcha', but no captcha is being produced. Why am I being asked for a 'captcha' that's not being produced, as shown in my attached picture.
- 1 reply
-
- windows 10
- chrome
-
(and 2 more)
Tagged with:
-
Safe Money: Login screen issue with an Online Bank
Guest posted a topic in Kaspersky: Basic, Standard, Plus, Premium
Hello Kaspersky Support, For years I have been a loyal user of Kaspersky Internet Security. Right now I have 2 working KIS licenses for 15 devices (10 devices/3 years and 5 devices/3 years). Last week, on 2 Win10 PCs, I upgraded from KIS to Kaspersky Standard without problem. But since upgrading to Kaspersky Standard, I have an annoying problem with Safe Money and "one" bank: - With 2 banks, namely "home.axabank.be" and "www.cbc.be", when I "launch the protected browser (Google) the connection information (card number, contract, etc.) is correctly stored for a future connection. - But since the update with the "www.bnpparibasfortis.be" bank, the connection information (card number, contract, etc.) is no longer kept as before (empty connection screen every day, after a PC restart). It appears to be a specific cookie issue for the bank "BNP Parisbas Fortis". But my call with their help desk did not help. I hope you can help me, because I am waiting for this problem to be fixed to update the other devices.. hpwamr -
Hello, Asking the community, as I've been running in EXHAUSTIVE CIRCLES with the support-experts at Kaspersky Labs support. Kaspersky Premium has been working, flawlessly, on an older desktop that I have reserved for kids and guests. Hence, why it's still on an older O/S. It's fully locked down, in regards to the standard User's ability to affect change. Point being, during the prior AUTO-installed Version-Update of Kaspersky Premium a few months ago, and without my consent, it (1) REMOVED my ability to access Parental Controls, (2) attempted but failed to auto-engage Kids Safe, and (3) REMOVED the prior settings I had engaged. You heard me correctly - Kaspersky now allows ANYONE to download EXE, ZIP et al. , contrary to my former settings / preferences. To provide added insight, I had long ago opted-out of their lackluster "Kids Safe". This action auto-enables the Parental Controls feature inside the main Kaspersky Premium app. The feature and its settings were working perfectly, prior to aforementioned auto-update, wherein I had settings such as DISALLOWING ALL users from performing downloads (such as EXE and ZIP), with the exception of the Local Admin. As stated, this was working flawlessly and is a standard security practice on any computer. The support team then asked me to manually install Kids Safe, providing me with a download URL to that installer. This doesn't work nor does it throw any errors or logs as to why .. it merely completes without any sign of Kids Safe being present - desktop icon, Start Menu, or on the hard drive itself. On my own, I did a FULL uninstall of Kaspersky Premium, rebooted, followed by a full install and from-scratch reconfigure. Despite this rigorous attempt, neither Parental Controls re-appeared .. nor did Kids Safe engage even after the app's initial launch prompted me about Kids Safe .. showing the PhD's review .. etc. NADA. The support team requested I provide them with a "Traces Archive" data-collection, using their support tool, to which I gladly obliged. They responded a week or so later with this: As most savvy users will note, this HKLM Registry area is NOT accessible for changes; not even for the Local Admin. I immediately responded, asking for insight on how that may be changed ... perhaps, by a special boot-time fix they could supply. This request was completely ignored. Instead, they next asked to Remote into my computer. As much as I do appreciate and promote Kaspersky Labs products, I don't wish to allow anyone into my private network ... especially, without even providing a hint as to their plan of action. Preposterous request, at best. The support team then asked me to perform the following steps, despite my (prior numerous times) disclosing that their app no longer prompts to "Restore Parental Controls" nor allows me to perform even a stand-alone install of Kids Safe! It is ENTIRELY UNACCEPTABLE that Kaspersky has not only removed my Parental Controls .. but their action has REVERTED my Security Preferences thereby allowing ANY user to download EXE, ZIP .. and, MOST DESTRUCTIVELY, drive-by downloads engineered specifically to exploit vulnerabilities on ALL O/S .. especially, those aged / out-of-support. This action has now forced me to bear the expense of replacing that entire computer with newer hardware and current O/S, as it's too old to properly host the demands of a newer O/S. Anyone with this experience, please opine.
-
previous application launch failed
ruggb posted a topic in Kaspersky: Basic, Standard, Plus, Premium
when I boot my computer and Kaspersky starts I get this popup window saying "previous application launch failed" and asking if I want to send data. I have sent it a few times, but I have no idea what application and what to do about it. Is it talking about Kaspersky? If so, why is it happening and how do I resolve it? -
I would like some help with this message that keeps popping up every time I start my computer, I've uninstalled and reinstalled the software three times and it always reappears, the message says "The previous startup of the application failed" and a report has to be sent , I already sent the report that the message asks for but even so it reappears, I wanted support for this and in the application settings there is no function that disables sending data, and at the time of installation I unchecked the option sending data to report, I request clarification on the matter...
-
I was surfing the web and accessing the Internet normally when suddenly I received a notification that there was a trojan in my computer by Kaspersky. I've tried running a quick scan and a full scan, but it doesn't seem to be doing very well. It still shows up when I use a web browser and log in to my personal account. One of the notifications below --- Event: Malicious object detected User: HUUPHUC\meoud User type: Initiator Application name: msedge.exe Application path: C:\Program Files (x86)\Microsoft\Edge\Application Component: Safe Browsing Result description: Detected Type: Trojan Name: HEUR:Exploit.Multi.Desert.gen Precision: Heuristic Analysis Threat level: High Object type: File Object path: https://sdk.iad-06.braze.com/api/v3/data MD5 of an object: F7C86BF2A8B02E5A77016F9A02CD1A1F Reason: Expert analysis Databases release date: Today, 7/23/2023 8:16:00 AM ---- You can see the image below Please help me fix this problem and give me a solution. Hanh
-
Uninstall KES v11 + Agent v14 command line
Yoann replied to Yoann's topic in Kaspersky Endpoint Security for Business
Hello THask. Thanks for the answer, but it does'nt work. If I search in the registry, I find my agent : Running your command, here is the LOG file: === Verbose logging started: 19/07/2023 08:41:38 Build type: SHIP UNICODE 5.00.10011.00 Calling process: C:\WINDOWS\system32\msiexec.exe === MSI (c) (14:80) [08:41:38:120]: Resetting cached policy values MSI (c) (14:80) [08:41:38:121]: Machine policy value 'Debug' is 0 MSI (c) (14:80) [08:41:38:121]: ******* RunEngine: ******* Product: {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} ******* Action: ******* CommandLine: ********** MSI (c) (14:80) [08:41:38:121]: Client-side and UI is none or basic: Running entire install on the server. MSI (c) (14:80) [08:41:38:121]: Grabbed execution mutex. MSI (c) (14:80) [08:41:38:125]: Cloaking enabled. MSI (c) (14:80) [08:41:38:125]: Attempting to enable all disabled privileges before calling Install on Server MSI (c) (14:80) [08:41:38:128]: Incrementing counter to disable shutdown. Counter after increment: 0 MSI (s) (C0:B4) [08:41:38:139]: Running installation inside multi-package transaction {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} MSI (s) (C0:B4) [08:41:38:139]: Grabbed execution mutex. MSI (s) (C0:E8) [08:41:38:142]: Resetting cached policy values MSI (s) (C0:E8) [08:41:38:142]: Machine policy value 'Debug' is 0 MSI (s) (C0:E8) [08:41:38:142]: ******* RunEngine: ******* Product: {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} ******* Action: ******* CommandLine: ********** MSI (s) (C0:E8) [08:41:38:142]: Machine policy value 'DisableUserInstalls' is 0 MSI (s) (C0:E8) [08:41:38:142]: Setting cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:142]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:144]: Note: 1: 2203 2: C:\WINDOWS\Installer\inprogressinstallinfo.ipi 3: -2147287038 MSI (s) (C0:E8) [08:41:38:148]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:148]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:148]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:148]: SRSetRestorePoint skipped for this transaction. MSI (s) (C0:E8) [08:41:38:148]: Creating MSIHANDLE (1) of type 790542 for thread 7912 MSI (s) (C0:E8) [08:41:38:148]: MSCOREE not loaded loading copy from system32 MSI (s) (C0:E8) [08:41:38:155]: End dialog not enabled MSI (s) (C0:E8) [08:41:38:155]: Original package ==> C:\WINDOWS\Installer\3c03.msi MSI (s) (C0:E8) [08:41:38:156]: Package we're running from ==> C:\WINDOWS\Installer\3c03.msi MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: APPCOMPAT: Uninstall Flags override found. MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: APPCOMPAT: Uninstall VersionNT override found. MSI (s) (C0:E8) [08:41:38:157]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:157]: APPCOMPAT: Uninstall ServicePackLevel override found. MSI (s) (C0:E8) [08:41:38:158]: APPCOMPAT: looking for appcompat database entry with ProductCode '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}'. MSI (s) (C0:E8) [08:41:38:158]: APPCOMPAT: no matching ProductCode found in database. MSI (s) (C0:E8) [08:41:38:158]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:158]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:158]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:158]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:158]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:161]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:162]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:162]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:162]: Machine policy value 'DisablePatch' is 0 MSI (s) (C0:E8) [08:41:38:162]: Machine policy value 'AllowLockdownPatch' is 0 MSI (s) (C0:E8) [08:41:38:162]: Machine policy value 'DisableLUAPatching' is 0 MSI (s) (C0:E8) [08:41:38:162]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:162]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:162]: Machine policy value 'DisableFlyWeightPatching' is 0 MSI (s) (C0:E8) [08:41:38:162]: Enabling baseline caching for this transaction since all active patches are MSI 3.0 style MSPs or at least one MSI 3.0 minor update patch is active MSI (s) (C0:E8) [08:41:38:163]: APPCOMPAT: looking for appcompat database entry with ProductCode '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}'. MSI (s) (C0:E8) [08:41:38:163]: APPCOMPAT: no matching ProductCode found in database. MSI (s) (C0:E8) [08:41:38:163]: Transforms are not secure. MSI (s) (C0:E8) [08:41:38:163]: PROPERTY CHANGE: Adding MsiLogFileLocation property. Its value is 'c:\nag_uninst.log'. MSI (s) (C0:E8) [08:41:38:163]: Command Line: REBOOT=ReallySuppress KLUNINSTPASSWD=xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00 REMOVE=ALL CURRENTDIRECTORY=c:\ CLIENTUILEVEL=3 CLIENTPROCESSID=12308 MSI (s) (C0:E8) [08:41:38:163]: PROPERTY CHANGE: Adding PackageCode property. Its value is '{B226E648-5478-4A8F-94E2-44534DA4CF90}'. MSI (s) (C0:E8) [08:41:38:163]: Product Code passed to Engine.Initialize: '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}' MSI (s) (C0:E8) [08:41:38:163]: Product Code from property table before transforms: '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}' MSI (s) (C0:E8) [08:41:38:163]: Product Code from property table after transforms: '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}' MSI (s) (C0:E8) [08:41:38:163]: Product registered: entering maintenance mode MSI (s) (C0:E8) [08:41:38:163]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:163]: Determined that existing product (either this product or the product being upgraded with a patch) is installed per-machine. MSI (s) (C0:E8) [08:41:38:163]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:163]: Product {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} is admin assigned: LocalSystem owns the publish key. MSI (s) (C0:E8) [08:41:38:163]: Product {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} is managed. MSI (s) (C0:E8) [08:41:38:163]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:163]: MSI_LUA: Credential prompt not required, user is an admin MSI (s) (C0:E8) [08:41:38:163]: PROPERTY CHANGE: Adding ProductState property. Its value is '5'. MSI (s) (C0:E8) [08:41:38:163]: PROPERTY CHANGE: Adding ProductToBeRegistered property. Its value is '1'. MSI (s) (C0:E8) [08:41:38:163]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:163]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:163]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer 3: 2 MSI (s) (C0:E8) [08:41:38:164]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:164]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:164]: Package name retrieved from configuration data: 'Kaspersky Network Agent.msi' MSI (s) (C0:E8) [08:41:38:164]: Note: 1: 2262 2: AdminProperties 3: -2147287038 MSI (s) (C0:E8) [08:41:38:164]: Machine policy value 'DisableMsi' is 0 MSI (s) (C0:E8) [08:41:38:164]: Machine policy value 'AlwaysInstallElevated' is 0 MSI (s) (C0:E8) [08:41:38:164]: User policy value 'AlwaysInstallElevated' is 0 MSI (s) (C0:E8) [08:41:38:164]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:164]: Product {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} is admin assigned: LocalSystem owns the publish key. MSI (s) (C0:E8) [08:41:38:164]: Product {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} is managed. MSI (s) (C0:E8) [08:41:38:164]: Running product '{2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B}' with elevated privileges: Product is assigned. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding REBOOT property. Its value is 'ReallySuppress'. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding KLUNINSTPASSWD property. Its value is 'xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00'. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding REMOVE property. Its value is 'ALL'. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding CURRENTDIRECTORY property. Its value is 'c:\'. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding CLIENTUILEVEL property. Its value is '3'. MSI (s) (C0:E8) [08:41:38:164]: PROPERTY CHANGE: Adding CLIENTPROCESSID property. Its value is '12308'. MSI (s) (C0:E8) [08:41:38:164]: Machine policy value 'DisableAutomaticApplicationShutdown' is 0 MSI (s) (C0:E8) [08:41:38:167]: PROPERTY CHANGE: Adding MsiRestartManagerSessionKey property. Its value is 'dc513c91447464429743e30782844539'. MSI (s) (C0:E8) [08:41:38:167]: RESTART MANAGER: Session opened. MSI (s) (C0:E8) [08:41:38:167]: TRANSFORMS property is now: MSI (s) (C0:E8) [08:41:38:167]: PROPERTY CHANGE: Adding PRODUCTLANGUAGE property. Its value is '1036'. MSI (s) (C0:E8) [08:41:38:167]: PROPERTY CHANGE: Adding VersionDatabase property. Its value is '300'. MSI (s) (C0:E8) [08:41:38:170]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming MSI (s) (C0:E8) [08:41:38:170]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\Favorites MSI (s) (C0:E8) [08:41:38:171]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Network Shortcuts MSI (s) (C0:E8) [08:41:38:172]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\Documents MSI (s) (C0:E8) [08:41:38:172]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Printer Shortcuts MSI (s) (C0:E8) [08:41:38:173]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Recent MSI (s) (C0:E8) [08:41:38:173]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\SendTo MSI (s) (C0:E8) [08:41:38:174]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Templates MSI (s) (C0:E8) [08:41:38:174]: SHELL32::SHGetFolderPath returned: C:\ProgramData MSI (s) (C0:E8) [08:41:38:174]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Local MSI (s) (C0:E8) [08:41:38:175]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\Pictures MSI (s) (C0:E8) [08:41:38:176]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools MSI (s) (C0:E8) [08:41:38:176]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup MSI (s) (C0:E8) [08:41:38:177]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu\Programs MSI (s) (C0:E8) [08:41:38:177]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Start Menu MSI (s) (C0:E8) [08:41:38:178]: SHELL32::SHGetFolderPath returned: C:\Users\Public\Desktop MSI (s) (C0:E8) [08:41:38:178]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools MSI (s) (C0:E8) [08:41:38:179]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup MSI (s) (C0:E8) [08:41:38:180]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Start Menu\Programs MSI (s) (C0:E8) [08:41:38:180]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Start Menu MSI (s) (C0:E8) [08:41:38:181]: SHELL32::SHGetFolderPath returned: C:\Users\adminyp\Desktop MSI (s) (C0:E8) [08:41:38:181]: SHELL32::SHGetFolderPath returned: C:\ProgramData\Microsoft\Windows\Templates MSI (s) (C0:E8) [08:41:38:182]: SHELL32::SHGetFolderPath returned: C:\WINDOWS\Fonts MSI (s) (C0:E8) [08:41:38:182]: Note: 1: 2898 2: MS Sans Serif 3: MS Sans Serif 4: 0 5: 16 MSI (s) (C0:E8) [08:41:38:186]: MSI_LUA: Setting AdminUser property to 1 because the product is already installed managed and per-machine MSI (s) (C0:E8) [08:41:38:186]: MSI_LUA: Setting MsiRunningElevated property to 1 because the install is already running elevated. MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding MsiRunningElevated property. Its value is '1'. MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding Privileged property. Its value is '1'. MSI (s) (C0:E8) [08:41:38:186]: Using cached product context: machine assigned for product: ADEB42927D0EFAD42A42052D0E1BF2B5 MSI (s) (C0:E8) [08:41:38:186]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2 MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding USERNAME property. Its value is 'Service Informatique'. MSI (s) (C0:E8) [08:41:38:186]: Note: 1: 1402 2: HKEY_CURRENT_USER\Software\Microsoft\MS Setup (ACME)\User Info 3: 2 MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding COMPANYNAME property. Its value is 'Eduyyyyyyyy'. MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding Installed property. Its value is '00:00:00'. MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding DATABASE property. Its value is 'C:\WINDOWS\Installer\3c03.msi'. MSI (s) (C0:E8) [08:41:38:186]: PROPERTY CHANGE: Adding OriginalDatabase property. Its value is 'C:\WINDOWS\Installer\3c03.msi'. MSI (s) (C0:E8) [08:41:38:186]: Machine policy value 'MsiDisableEmbeddedUI' is 0 MSI (s) (C0:E8) [08:41:38:186]: EEUI - Disabling MsiEmbeddedUI for service because it's not a quiet/basic install MSI (s) (C0:E8) [08:41:38:186]: Note: 1: 2205 2: 3: PatchPackage MSI (s) (C0:E8) [08:41:38:187]: Machine policy value 'DisableRollback' is 0 MSI (s) (C0:E8) [08:41:38:187]: User policy value 'DisableRollback' is 0 MSI (s) (C0:E8) [08:41:38:187]: PROPERTY CHANGE: Adding UILevel property. Its value is '2'. === Début de l'écriture dans le journal : 19/07/2023 08:41:38 === MSI (s) (C0:E8) [08:41:38:187]: Note: 1: 2203 2: C:\WINDOWS\Installer\inprogressinstallinfo.ipi 3: -2147287038 MSI (s) (C0:E8) [08:41:38:187]: PROPERTY CHANGE: Adding Preselected property. Its value is '1'. MSI (s) (C0:E8) [08:41:38:187]: APPCOMPAT: [DetectVersionLaunchCondition] Launch condition already passes. MSI (s) (C0:E8) [08:41:38:200]: PROPERTY CHANGE: Adding ACTION property. Its value is 'INSTALL'. MSI (s) (C0:E8) [08:41:38:200]: Doing action: INSTALL Début de l'action 08:41:38 : INSTALL. MSI (s) (C0:E8) [08:41:38:200]: Running ExecuteSequence MSI (s) (C0:E8) [08:41:38:200]: Doing action: SetSetupPath MSI (s) (C0:E8) [08:41:38:212]: Creating MSIHANDLE (2) of type 790542 for thread 7912 MSI (s) (C0:F0) [08:41:38:213]: Invoking remote custom action. DLL: C:\WINDOWS\Installer\MSI250D.tmp, Entrypoint: SetSetupPath MSI (s) (C0:EC) [08:41:38:213]: Generating random cookie. MSI (s) (C0:EC) [08:41:38:224]: Created Custom Action Server with PID 13004 (0x32CC). MSI (s) (C0:E0) [08:41:38:253]: Running as a service. MSI (s) (C0:E0) [08:41:38:261]: Hello, I'm your 32bit Impersonated custom action server. MSI (s) (C0!C0) [08:41:38:358]: PROPERTY CHANGE: Adding SetupDir property. Its value is 'C:\WINDOWS\Installer\'. MSI (s) (C0!C0) [08:41:38:358]: PROPERTY CHANGE: Adding SetupLog property. Its value is 'C:\WINDOWS\Installer\setup.log'. MSI (s) (C0!C0) [08:41:38:358]: PROPERTY CHANGE: Adding SetupRep property. Its value is 'C:\WINDOWS\Installer\setup.rep'. MSI (s) (C0:F0) [08:41:38:360]: Closing MSIHANDLE (2) of type 790542 for thread 7912 Début de l'action 08:41:38 : SetSetupPath. MSI (s) (C0:E8) [08:41:38:362]: Doing action: AppSearch Action terminé 08:41:38 : SetSetupPath. Valeur retournée 1. Début de l'action 08:41:38 : AppSearch. MSI (s) (C0:E8) [08:41:38:362]: PROPERTY CHANGE: Adding OS_SUPPORTS_UI property. Its value is 'C:\WINDOWS\explorer.exe'. MSI (s) (C0:E8) [08:41:38:363]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE32\SYSTEM\CurrentControlSet\Services\npf 3: 2 MSI (s) (C0:E8) [08:41:38:363]: Doing action: FindRelatedProducts Action terminé 08:41:38 : AppSearch. Valeur retournée 1. MSI (s) (C0:E8) [08:41:38:363]: Skipping FindRelatedProducts action: not run in maintenance mode Début de l'action 08:41:38 : FindRelatedProducts. MSI (s) (C0:E8) [08:41:38:363]: Skipping action: SetNagentFoundProperty (condition is false) MSI (s) (C0:E8) [08:41:38:363]: Skipping action: SetFirstInstall (condition is false) MSI (s) (C0:E8) [08:41:38:363]: Skipping action: SetMajorUpgrade (condition is false) MSI (s) (C0:E8) [08:41:38:363]: Skipping action: SetMinorUpgrade (condition is false) MSI (s) (C0:E8) [08:41:38:363]: Doing action: CheckIfPatchServiceRunning Action terminé 08:41:38 : FindRelatedProducts. Valeur retournée 0. MSI (s) (C0:E8) [08:41:38:368]: Creating MSIHANDLE (3) of type 790542 for thread 7912 MSI (s) (C0:78) [08:41:38:368]: Invoking remote custom action. DLL: C:\WINDOWS\Installer\MSI25BA.tmp, Entrypoint: CheckIfPatchServiceRunningCA MSI (s) (C0:78) [08:41:38:425]: Closing MSIHANDLE (3) of type 790542 for thread 7912 Début de l'action 08:41:38 : CheckIfPatchServiceRunning. MSI (s) (C0:E8) [08:41:38:426]: Doing action: LaunchConditions Action terminé 08:41:38 : CheckIfPatchServiceRunning. Valeur retournée 1. Début de l'action 08:41:38 : LaunchConditions. MSI (s) (C0:E8) [08:41:38:428]: Skipping action: CheckRequirements (condition is false) MSI (s) (C0:E8) [08:41:38:428]: Doing action: GetUninstallPwd Action terminé 08:41:38 : LaunchConditions. Valeur retournée 1. MSI (s) (C0:E8) [08:41:38:432]: Creating MSIHANDLE (4) of type 790542 for thread 7912 MSI (s) (C0:74) [08:41:38:432]: Invoking remote custom action. DLL: C:\WINDOWS\Installer\MSI25FA.tmp, Entrypoint: GetUninstallPwd MSI (s) (C0!EC) [08:41:38:491]: PROPERTY CHANGE: Adding PWDINSSHASH property. Its value is '7723368E00AA05E03E6D9F2398020396'. MSI (s) (C0:74) [08:41:38:492]: Closing MSIHANDLE (4) of type 790542 for thread 7912 Début de l'action 08:41:38 : GetUninstallPwd. MSI (s) (C0:E8) [08:41:38:495]: Skipping action: UpgradeUninstallPwdError_SilentMode (condition is false) MSI (s) (C0:E8) [08:41:38:495]: Doing action: CheckUninstallPwd_SilentMode Action terminé 08:41:38 : GetUninstallPwd. Valeur retournée 1. MSI (s) (C0:E8) [08:41:38:498]: Creating MSIHANDLE (5) of type 790542 for thread 7912 MSI (s) (C0:B4) [08:41:38:498]: Invoking remote custom action. DLL: C:\WINDOWS\Installer\MSI2639.tmp, Entrypoint: CheckUninstallPwd_SilentMode Début de l'action 08:41:38 : CheckUninstallPwd_SilentMode. MSI (s) (C0:B4) [08:41:38:558]: Closing MSIHANDLE (5) of type 790542 for thread 7912 CustomAction CheckUninstallPwd_SilentMode returned actual error code 1603 (note this may not be 100% accurate if translation happened inside sandbox) Action terminé 08:41:38 : CheckUninstallPwd_SilentMode. Valeur retournée 3. Action terminé 08:41:38 : INSTALL. Valeur retournée 3. Property(S): UpgradeCode = {B9518725-0B76-4793-A409-C6794442FB50} Property(S): OS_SUPPORTS_UI = C:\WINDOWS\explorer.exe Property(S): USESSL = 1 Property(S): OPENUDPPORT = 1 Property(S): KLNAG_PTCH_ALLOW_APPLY_NONAPROVED_PATCHES = 1 Property(S): LAUNCHPROGRAM = 1 Property(S): GATEWAYMODE = 0 Property(S): SERVERPORT = 14000 Property(S): SERVERSSLPORT = 13000 Property(S): UDPPORT = 15000 Property(S): WIXUI_INSTALLDIR = INSTALLDIR Property(S): CERTSELECTION = GetOnFirstConnection Property(S): PWDINSSHASH = 7723368E00AA056D9F2398020396AABBCCDD Property(S): ERROR_CERT_NOT_SELECTED = Aucun certificat du Serveur d'administration n'est sélectionné. Property(S): ERROR_EMPTY_PASSWORD = Le mot de passe de désinstallation n'est pas indiqué. Property(S): ProgramFilesFolder = C:\Program Files (x86)\ Property(S): SystemFolder = C:\WINDOWS\SysWOW64\ Property(S): CommonFilesFolder = C:\Program Files (x86)\Common Files\ Property(S): VersionNT = 603 Property(S): Installed = 00:00:00 Property(S): Manufacturer = Kaspersky Property(S): ProductCode = {2924BEDA-E0D7-4DAF-A224-50D2E0B12F5B} Property(S): ProductLanguage = 1036 Property(S): ProductName = Agent d'administration de Kaspersky Security Center Property(S): ProductVersion = 14.0.0.10902 Property(S): ERROR_BOOTSTRAPPER_NEEDS = Pour installer l'application, il faut lancer le fichier setup.exe. Property(S): KSNPROXYSERVICE_NAME = ksnproxy Property(S): KSNPROXYSERVICE_DISPLAY_NAME = Serveur proxy Kaspersky Security Network Property(S): KSNPROXYSERVICE_DESCRIPTION = Le service KSN proxy retransforme les demandes adressées à Kaspersky Security Network et met en cache les réponses. Property(S): UpdaterName = Composant de mise à jour de Kaspersky Security Center Property(S): KLMON_SERVICE_DISPLAY = Surveillance du réseau Property(S): KLNPF_SERVICE_DISPLAY = Pilote WinPcap Property(S): NAGENTSERVICE_NAME = klnagent Property(S): NAGENTSERVICE_DISPLAY_NAME = Agent d'administration de Kaspersky Security Center Property(S): NAGENTSERVICE_DESCRIPTION = L'Agent d'administration assure l'interaction entre le Serveur d'administration et les applications Kaspersky installées sur les appareils. Property(S): NSACSERVICE_NAME = klnsacwsrv Property(S): NSACSERVICE_DISPLAY_NAME = Portail d'autorisation de Kaspersky Property(S): NSACSERVICE_DESCRIPTION = Portail Internet d'authentification d'accès Property(S): InstallerProject = Nagent Property(S): KLNAG_KEL_NAME = Journal des événements Kaspersky Property(S): KLAdmins = Administrateurs de Kaspersky Security Center 14 Property(S): KLOperators = Opérateurs de Kaspersky Security Center 14 Property(S): START_MENU_FLDR_OLD_NAME = Kaspersky Security Center Property(S): START_MENU_FLDR_ACTUAL_NAME = Kaspersky Security Center Property(S): DEDICATED_ACCOUNT_DESCRIPTION = Compte utilisateur désigné pour l'Agent d'administration. Property(S): DEDICATED_SERVICE_ACCOUNT_FULL_NAME = Compte utilisateur désigné pour l'Agent d'administration Property(S): ALLUSERS = 1 Property(S): ARPSYSTEMCOMPONENT = 1 Property(S): ARPNOMODIFY = 1 Property(S): ARPNOREPAIR = 1 Property(S): ARPHELPLINK = https://support.kaspersky.com/fr Property(S): ARPURLUPDATEINFO = https://www.kaspersky.fr/downloads Property(S): ARPPRODUCTICON = setup2.ico Property(S): ARPHELPTELEPHONE = http://support.kaspersky.com/support/business_support_contacts Property(S): INSTALLLEVEL = 5 Property(S): LANGID = fr Property(S): ProductName_GEN = Agent d'administration de Kaspersky Security Center Property(S): ProductName_ACC = Agent d'administration de Kaspersky Security Center Property(S): ProductName_DAT = Agent d'administration de Kaspersky Security Center Property(S): ProductName_ART = Agent d'administration de Kaspersky Security Center Property(S): ProductName_GEN_ART = Agent d'administration de Kaspersky Security Center Property(S): ProductName_ACC_ART = Agent d'administration de Kaspersky Security Center Property(S): ProductName_DAT_ART = Agent d'administration de Kaspersky Security Center Property(S): MSIENFORCEUPGRADECOMPONENTRULES = 1 Property(S): MSIRESTARTMANAGERCONTROL = DisableShutdown Property(S): REINSTALLMODE = vomus Property(S): ERROR_REBOOT_NEEDED = Vous devez redémarrer l'appareil pour terminer l'installation. Property(S): INT_PRODUCT_NAME = 1103 Property(S): INT_PRODUCT_VER = 1.0.0.0 Property(S): ALLOWNETBIOS = 1 Property(S): COMPRESSTRAFFIC = 1 Property(S): ERROR_SUCCESS = 0 Property(S): ERROR_INCOMPATIBLE_OS = Impossible d'installer l'application. Le système d'exploitation %1 n'est pas pris en charge. Property(S): ERROR_INCOMPATIBLE_INSTALLER = Impossible d'installer les applications. La version actuelle de Windows Installer %1 n'est pas prise en charge par cette application. Property(S): ERROR_PRIVILEGES = Impossible d'installer l'application. Le compte utilisateur %1 ne possède pas de privilèges nécessaires. Property(S): ERROR_NEWER_VERSION = L'application ne peut pas être installée. Une version plus récente de l'Agent d'administration (%1) a été détectée. Property(S): ERROR_AK_NAGENT_FOUND = L'Agent d'administration est déjà installé comme partie intégrante du Serveur d'administration. Property(S): ERROR_FATAL = Une erreur inattendue est apparue : %1. Property(S): ERROR_NAGENT_REG = Une erreur inattendue est apparue à l'enregistrement de l'Agent d'administration. Property(S): ERROR_STOP_SERVICE = Échec de l'arrêt du service %1. Essayez de l'arrêter manuellement, puis redémarrez l'installation. Property(S): ERROR_STOP_SERVICES = Impossible d'arrêter certains services de l'Agent d'administration : %1. Essayez de l'arrêter manuellement, puis redémarrez l'installation. Property(S): ERROR_B2B_UPGRADE = L'Agent d'administration a été installé à l'origine en mode B2B Cloud. Vous ne pouvez le mettre à niveau qu'en mode B2B Cloud uniquement. Property(S): ERROR_NOTB2B_UPGRADE = L'Agent d'administration n'a pas été installé à l'origine en mode B2B Cloud. Vous ne pouvez pas le mettre à niveau en mode B2B Cloud. Property(S): ERROR_NAGENT_INFO = Impossible d'obtenir les informations sur l'instance de l'Agent d'administration installée. Vous pouvez essayer de la désinstaller manuellement, puis de relancer l'installation. Tous les paramètres de l'Agent d'administration seront perdus. Property(S): ERROR_NAGENT_BACKUP = Impossible de sauvegarder les données de l'instance d'Agent d'administration installée. Assurez-vous que les chemins d'accès %1 et %2 sont accessibles, et que l'espace libre pour la sauvegarde est suffisant. Property(S): ERROR_NAGENT_JUNCTION = Assurez-vous que le chemin %1 est un lien symbolique vers le dossier %2, et non un chemin d'accès physique. Property(S): ERROR_NAGENT_KESENCRYPT = Les disques ou les fichiers de cet appareil sont chiffrés. Pour installer l'Agent d'administration sous Kaspersky Security Center Cloud Console, vous devez d'abord déchiffrer l'appareil et désactiver le chiffrement des données pour cet appareil en utilisant la stratégie Kaspersky Endpoint Security for Windows. Property(S): ERROR_NAGENT_MIGRATIONONPWD = Upgrade of Network Agent with changing installation mode is not supported if it is password-protected to uninstall. Property(S): DefaultUIFont = WixUI_Font_Normal Property(S): DefaultUITitle = Agent d'administration de Kaspersky Security Center Property(S): ErrorDialog = ErrorDlg Property(S): ERROR_GATEWAY_ADDRESS_EMPTY = Aucune adresse de passerelle de connexion n'est indiquée. Property(S): ERROR_GATEWAY_ADDRESS_INVALID = L'adresse de la passerelle contient des caractères inadmissibles. Property(S): ERROR_GATEWAY_ADDRESS_INVALID_FMT = L'adresse de la passerelle contient des caractères non valides. Les caractères non autorisés sont : %s Property(S): ERROR_SERVER_ADDRESS_EMPTY = Nom du Serveur d'administration n'est pas indiqué. Property(S): ERROR_SERVER_ADDRESS_INVALID = Le nom du Serveur d'administration contient des caractères non valides. Property(S): ERROR_SERVER_PORT_EMPTY = Le nom du port du Serveur d'administration n'est pas indiqué. Property(S): ERROR_SERVER_PORT_INVALID = Numéro de port du Serveur d'administration non valide. La valeur doit être comprise entre 1 et 65 535. Property(S): ERROR_SERVER_SSL_PORT_EMPTY = Le nom du port SSL du Serveur d'administration n'est pas indiqué. Property(S): ERROR_SERVER_SSL_PORT_INVALID = Numéro de port SSL du serveur d'administration non valide. La valeur doit être comprise entre 1 et 65 535. Property(S): ERROR_SERVER_PORT_EQ_SSL_PORT = Le port et le port SSL du Serveur d'administration doivent être différents. Property(S): ERROR_SERVER_UDP_PORT_EMPTY = Le port UDP de l'Agent d'administration n'est pas indiqué. Property(S): ERROR_SERVER_UDP_PORT_INVALID = Le numéro du port UDP de l'agent d'administration est incorrect. La valeur doit être comprise entre 1 et 65 535. Property(S): ERROR_SERVER_TAGLENGTH_TOOLONG = La longueur du tag ne peut pas être supérieure à 255 caractères. Property(S): ERROR_SERVER_TAGNAME_WRONGSYMBOL = Les caractères suivants ne sont pas autorisés dans un nom de tag : "*<>?\:| Property(S): ERROR_PROXY_ADDRESS_EMPTY = L'adresse du serveur proxy n'est pas définie. Property(S): ERROR_PROXY_ADDRESS_INVALID = Le nom du serveur proxy contient des caractères interdits. Property(S): ERROR_PROXY_PORT_EMPTY = Le port du serveur proxy n'est pas défini. Property(S): ERROR_PROXY_PORT_INVALID = Le numéro du port du serveur proxy est incorrect. La valeur doit être comprise entre 1 et 65535. Property(S): ERROR_PROXY_ACCOUNT_EMPTY = Le nom du compte utilisateur n'est pas indiqué. Property(S): ERROR_PROXY_ACCOUNT_INVALID = Nom du compte utilisateur incorrect. Property(S): ERROR_WRONG_UNINST_PWD = Mot de passe de désinstallation incorrect. Property(S): ERROR_EULA_ISNOT_ACCEPTED = Le Contrat de licence utilisateur final n'a pas été accepté. Property(S): ERROR_PPOLICY_ISNOT_ACCEPTED = La Politique de confidentialité n'est pas acceptée. Property(S): WARNING_OLD_NPF_DRIVER = La bibliothèque WinPcap n'a pas été installée parce qu'une version antérieure de la bibliothèque WinPcap a été détectée sur l'appareil. Property(S): SecureCustomProperties = FOUND_NEWER_PRODUCT;FOUNDNAGENT_LESS_V6;FOUNDNAGENT_V6;FOUNDNAGENT_V6_MSI;FOUNDNAGENT_V8;FOUNDNAGENT_V9;FOUNDSERVER_LESS_V9;FOUNDSERVER_V9 Property(S): MsiHiddenProperties = ExtractNagentBases;RollbackExtractNagentBases Property(S): MsiLogFileLocation = c:\nag_uninst.log Property(S): PackageCode = {B226E648-5478-4A8F-94E2-44534DA4CF90} Property(S): ProductState = 5 Property(S): ProductToBeRegistered = 1 Property(S): REBOOT = ReallySuppress Property(S): KLUNINSTPASSWD=xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00xx00 Property(S): REMOVE = ALL Property(S): CURRENTDIRECTORY = c:\ Property(S): CLIENTUILEVEL = 3 Property(S): CLIENTPROCESSID = 12308 Property(S): MsiRestartManagerSessionKey = dc513c91447464429743e30782844539 Property(S): PRODUCTLANGUAGE = 1036 Property(S): VersionDatabase = 300 Property(S): VersionMsi = 5.00 Property(S): VersionNT64 = 603 Property(S): WindowsBuild = 9600 Property(S): ServicePackLevel = 0 Property(S): ServicePackLevelMinor = 0 Property(S): MsiNTProductType = 1 Property(S): WindowsFolder = C:\WINDOWS\ Property(S): WindowsVolume = C:\ Property(S): System64Folder = C:\WINDOWS\system32\ Property(S): RemoteAdminTS = 1 Property(S): TempFolder = C:\Users\adminyp\AppData\Local\Temp\ Property(S): ProgramFiles64Folder = C:\Program Files\ Property(S): CommonFiles64Folder = C:\Program Files\Common Files\ Property(S): AppDataFolder = C:\Users\adminyp\AppData\Roaming\ Property(S): FavoritesFolder = C:\Users\adminyp\Favorites\ Property(S): NetHoodFolder = C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Network Shortcuts\ Property(S): PersonalFolder = C:\Users\adminyp\Documents\ Property(S): PrintHoodFolder = C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Printer Shortcuts\ Property(S): RecentFolder = C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\Recent\ Property(S): SendToFolder = C:\Users\adminyp\AppData\Roaming\Microsoft\Windows\SendTo\ Property(S): TemplateFolder = C:\ProgramData\Microsoft\Windows\Templates\ Property(S): CommonAppDataFolder = C:\ProgramData\ Property(S): LocalAppDataFolder = C:\Users\adminyp\AppData\Local\ Property(S): MyPicturesFolder = C:\Users\adminyp\Pictures\ Property(S): AdminToolsFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ Property(S): StartupFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ Property(S): ProgramMenuFolder = C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Property(S): StartMenuFolder = C:\ProgramData\Microsoft\Windows\Start Menu\ Property(S): DesktopFolder = C:\Users\Public\Desktop\ Property(S): FontsFolder = C:\WINDOWS\Fonts\ Property(S): GPTSupport = 1 Property(S): OLEAdvtSupport = 1 Property(S): ShellAdvtSupport = 1 Property(S): MsiAMD64 = 6 Property(S): Msix64 = 6 Property(S): Intel = 6 Property(S): PhysicalMemory = 7862 Property(S): VirtualMemory = 4858 Property(S): AdminUser = 1 Property(S): MsiTrueAdminUser = 1 Property(S): LogonUser = AdminYP Property(S): UserSID = S-1-5-21-2507263096-1611601412-3754082935-8008 Property(S): UserLanguageID = 1036 Property(S): ComputerName = EDU008065 Property(S): SystemLanguageID = 1036 Property(S): ScreenX = 1024 Property(S): ScreenY = 768 Property(S): CaptionHeight = 23 Property(S): BorderTop = 1 Property(S): BorderSide = 1 Property(S): TextHeight = 16 Property(S): TextInternalLeading = 3 Property(S): ColorBits = 32 Property(S): TTCSupport = 1 Property(S): Time = 08:41:38 Property(S): Date = 19/07/2023 Property(S): MsiNetAssemblySupport = 4.8.9032.0 Property(S): MsiWin32AssemblySupport = 6.3.22621.963 Property(S): RedirectedDllSupport = 2 Property(S): MsiRunningElevated = 1 Property(S): Privileged = 1 Property(S): USERNAME = Service Informatique Property(S): COMPANYNAME = Educ@Rennes Property(S): DATABASE = C:\WINDOWS\Installer\3c03.msi Property(S): OriginalDatabase = C:\WINDOWS\Installer\3c03.msi Property(S): UILevel = 2 Property(S): Preselected = 1 Property(S): ACTION = INSTALL Property(S): SetupDir = C:\WINDOWS\Installer\ Property(S): SetupLog = C:\WINDOWS\Installer\setup.log Property(S): SetupRep = C:\WINDOWS\Installer\setup.rep MSI (s) (C0:E8) [08:41:38:582]: Note: 1: 1725 MSI (s) (C0:E8) [08:41:38:582]: Application : Agent d'administration de Kaspersky Security Center -- La suppression a échoué. MSI (s) (C0:E8) [08:41:38:582]: Windows Installer a supprimé le produit. Nom du produit : Agent d'administration de Kaspersky Security Center. Version du produit : 14.0.0.10902. Langue du produit : 1036. Fabricant : Kaspersky. Réussite de la suppression ou état d’erreur : 1603. MSI (s) (C0:E8) [08:41:38:582]: Closing MSIHANDLE (1) of type 790542 for thread 7912 MSI (s) (C0:E8) [08:41:38:584]: Deferring clean up of packages/files, if any exist MSI (s) (C0:E8) [08:41:38:584]: MainEngineThread is returning 1603 MSI (s) (C0:B4) [08:41:38:586]: RESTART MANAGER: Session closed. MSI (s) (C0:B4) [08:41:38:586]: No System Restore sequence number for this installation. === Fin de l'écriture dans le journal : 19/07/2023 08:41:38 === MSI (s) (C0:B4) [08:41:38:586]: User policy value 'DisableRollback' is 0 MSI (s) (C0:B4) [08:41:38:586]: Machine policy value 'DisableRollback' is 0 MSI (s) (C0:B4) [08:41:38:587]: Incrementing counter to disable shutdown. Counter after increment: 0 MSI (s) (C0:B4) [08:41:38:587]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Rollback\Scripts 3: 2 MSI (s) (C0:B4) [08:41:38:587]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\Rollback\Scripts 3: 2 MSI (s) (C0:B4) [08:41:38:587]: Decrementing counter to disable shutdown. If counter >= 0, shutdown will be denied. Counter after decrement: -1 MSI (s) (C0:B4) [08:41:38:587]: Destroying RemoteAPI object. MSI (s) (C0:EC) [08:41:38:587]: Custom Action Manager thread ending. MSI (c) (14:80) [08:41:38:588]: Decrementing counter to disable shutdown. If counter >= 0, shutdown will be denied. Counter after decrement: -1 MSI (c) (14:80) [08:41:38:589]: MainEngineThread is returning 1603 === Verbose logging stopped: 19/07/2023 08:41:38 === It shows several errors and no uninstallation I tried to reboot, with no results. If you have an idea ... Thanks -
So, in the last 4-5 days now Kaspersky is blocking the app Discord on my PC. It doesn't give me any notifications whatsoever I just can't launch discord while Kaspersky is active. Discord shows me the following error '' Update failed - retrying in X sec... ''. I did get in contact with Discord support and for 3 Days we tried many different ways to fix it, other versions, PTBs, older versions, different launch options etc. but in the end, it came all to the same result, Discord won't launch, no matter which version it is unless I completely turn of Kaspersky. When i do turn off Kaspersky - launch Discord - turn on Kaspersky, Discord won't show me pictures and won't let me play videos via the app. After a couple minutes more Discord will get in a state where you would get normally if you don't have internet connection anymore. So, as said to be able to use Discord i need to turn off Kaspersky. When i try to add the Discord.exe as a trusty source via Kaspersky option -> threats and exceptions -> specify trusted apps, Kaspersky does crash. I did attach a screenshot about it. When im in the opions '' exceptions for application '' and i add Discord.exe after i click 'tamam' which means OK, nothing happens (even if i wait for long). After i click it 1 more time Kaspersky just crashes. So here the stuff i already did and still doing. -Check for Updates and do them -Check drivers -Launch with administrator -Try older Version of Discord -Try to add as many folders etc from Discord as a Trusty source -Try different Version of Discord like Public Test Build -Send crash report when Kaspersky crashes I would be happy if someone can give me a solution to this. Discord staff run out of options to let me try so it seems like it might be a problem with Kaspersky. My Version is Microsoft Windows 11 x64 Build 22621 --- 21.3.10.391 (k) --- It's standart version of Kaspersky. Not a free one.
-
Good day I will try to explain 1. Licensing first of all, familiarize yourself with the capabilities of your license package ... https://b2b-compare.kaspersky.ru/ unfortunately I found only the Russian version, try using the translation of the page Google Chrome you need to understand that the applications you install have a full range of functions, but their activation depends on the type of your license Select license (as well as other licenses) allows you to use many solutions to protect end devices running different systems KES - for workstation (7,8,10,11) and Servers KSWS - for Windows Servers (2008, 2012, 2016, 2019 etc) IOS Android Linux these are different solutions, however, you will need the same license to activate them, counting licenses by total number of devices, for example... KES - 5, KSWS -3, Linux - 2, Android -2, iOS - 1 = 13 2.what to use for servers - KES or KSWS in terms of licenses - no difference KSWS - initially better tested for working with servers, and has a completely different set of components than KES. What to use depends on your security approach and functionality requirements. however, I would like to clarify that at the moment the version of KSWS is 11.0.1 - and its further development is not planned, everything is being replaced by a single KES solution (now KSWS capabilities are being actively added to it), support for the solution will be extended until the end of 2024. Therefore, it is worth thinking about the transition to this solution. https://support.kaspersky.com/help/KESWin/12.1/en-US/181834.htm 3. problems with network blocking of scanners ... more information is needed here to understand the essence of the problem ... in any case, you can always contact technical support through your personal account https://companyaccount.kaspersky.com support is available to all business license users 4. local management of the KSWS client (adding keys) if KSWS is connected to a KSC server, the installation of licenses can be done either automatically or using a task, there is no need to do it manually on each server. By default, KSWS does not have such a local interface for managing the solution (like KES for example), to connect to the interface, you will need to additionally install the management console ... You can download it from the manufacturer's website (full distribution) https://www.kaspersky.com/small-to-medium-business-security/downloads/endpoint?icid=ru_sup-site_trd_ona_oth__onl_b2b_klsupport_tri-dl____ksws___ Extract the contents of the archive, and run setup.exe, on the server where you want to install the console, select the appropriate item for installation. It is not necessary to install the console on all servers in the network, the console has the ability to connect remotely to the KSWS solution, you will be asked about this in one of the console installation steps. after that you can launch the console from the start menu or tray icons... add or remove a license or configure the settings manually if the device is not connected to the KSC 5. no ability to create tasks and policies for KSWS you probably forgot to install the management plugin for the KSWS solution ... it will allow you to customize the solution ... you can install it from KSC download and run the installation of the plugin, after it is completed, restart the console... you should now be able to pop in and set up policies and tasks 6. tasks for each of the products there is a list of tasks, and if I understand correctly you did not find the virus scan task ... for KSWS this is an on-demand scan sorry for such a long post
-
Jurassic World Evolution 2 троян
Smalikov replied to Smalikov's topic in Kaspersky Internet Security
От разработчиков игры Frontier Customer Support пришел ответ: (11:36:50 AM) Luna: Hi there. We've received a number of reports of this and will have it looked into. In the meantime, this is definitely a false positive, and you can safely whitelist JWE2.exe to launch the game. (11:36:50 AM) Luna: Всем привет. Мы получили ряд сообщений об этом и проверим их. В то же время это определенно ложное срабатывание, и вы можете смело добавлять JWE2.exe в белый список для запуска игры. (переведено) Стоит ли верить? Или подождать немного? -
Hello @templar, there is a slightly older answer to your question from @Igor Kurzin. According to it, a rootkit scan also takes place during the quick scan and the full scan. I think nothing has changed.
-
Greetings folks, I think I asked this question years ago on the old forums, and I can't remember the answer. Does Quick scan and Full scan include a rootkit scan? I only ever run Quick scans, the only time I will run a Full scan is if Kaspersky detects something in a Quick scan. I also have background/rootkit scan turned off, as I prefer to run all scans manually. It occurred to me the other day that if this function is turned off and Quick scans don't include Rootkit scans then I'm never actually scanning my PC for rootkits.
-
Wait! that pic You posted is not a blocking but a Kaspersky program crash (previous application launch failed), so it seems Your system is not so healthy, be sure You have installed all the system updates via Windows Update, check also Optional. Also, check the health of Your system hard disk: run a ScanDisk. Do You have any additional security software installed in the systen?
-
Any update or date of launch? I really don't wanna change my browser :(
-
To check the health of Kaspersky Endpoint Security on a Windows Server 2016 domain controller, you can follow these steps: Launch Kaspersky Endpoint Security: Open the Kaspersky Endpoint Security console on the Windows Server 2016 domain controller. You can typically find it in the Start menu or by searching for "Kaspersky Endpoint Security." Check Protection Status: In the Kaspersky Endpoint Security console, look for the protection status or health status indicator. It should provide an overview of the current state of your system's protection. Ensure that the status is displayed as "Protected" or "Secure." If there are any issues or warnings, they will be highlighted in this section. Update Kaspersky Endpoint Security: Check if your Kaspersky Endpoint Security installation is up to date. Look for an option to update the software within the console. It's important to keep your antivirus software updated to ensure it has the latest virus definitions and security patches. Run a System Scan: Initiate a system scan within Kaspersky Endpoint Security to check for any malware or threats. You can typically find the scanning options in the console's navigation menu. Perform a full system scan to thoroughly examine all files and processes on the domain controller. Review Event Logs: Check the event logs within the Kaspersky Endpoint Security console for any warnings, errors, or relevant information. The event logs can provide insights into the health and performance of the software, as well as any issues that might need attention. Verify Real-Time Protection: Ensure that real-time protection is enabled and active on the domain controller. Real-time protection actively monitors files, processes, and network activity to detect and block any potential threats in real-time. Confirm that this feature is turned on and functioning properly. Check Update Settings: Verify that the update settings in Kaspersky Endpoint Security are configured correctly. Ensure that the software is set to automatically update virus definitions and program modules. This ensures that your antivirus software is equipped with the latest protection against emerging threats. Verify Exclusions and Policies: Check the configured exclusions and policies within Kaspersky Endpoint Security to ensure they align with your organization's requirements. Exclusions can be set for specific files, folders, or processes that should be excluded from scanning. Policies dictate the behavior and settings of the antivirus software. If you encounter any specific issues or errors during the process, consult the Kaspersky Endpoint Security documentation, contact Kaspersky technical support, or consider seeking assistance from an IT professional experienced with Kaspersky products.
-
If Kaspersky Endpoint Security did not detect the W32/ASH!tr Trojan virus on your system, here are some steps you can take to address the issue: Update Kaspersky: Ensure that your Kaspersky Endpoint Security is up to date with the latest virus definitions. Newer updates often include detection and removal capabilities for recently discovered threats. Perform a Full System Scan: Initiate a comprehensive scan of your entire system using Kaspersky Endpoint Security. Make sure you select the option for a full system scan rather than a quick scan, as it covers more areas of your computer. Use an Additional Security Tool: Consider using another reputable antivirus or antimalware software alongside Kaspersky to increase the chances of detecting and removing the Trojan. Some well-known options include Malwarebytes, Norton, or Bitdefender. Ensure that you only run one real-time protection software at a time to avoid conflicts. Check for False Positives: It's possible that Kaspersky Endpoint Security might have identified the file as a false positive, meaning it flagged a legitimate file as a threat. Check the quarantine or detection logs within the Kaspersky software to confirm if this is the case. If it is indeed a false positive, you can restore the file from quarantine and exclude it from future scans. Update Your Operating System and Applications: Make sure your operating system, web browsers, and other applications are updated to the latest versions. Keeping your software up to date helps protect against known vulnerabilities that malware can exploit. Run Additional Malware Removal Tools: Use reputable on-demand scanners like Microsoft Safety Scanner, Emsisoft Emergency Kit, or HitmanPro to scan your system for malware. These tools can complement your existing security software and provide an additional layer of detection. Seek Professional Assistance: If the issue persists or you're uncertain about the severity of the infection, consider consulting a professional IT technician or contacting the technical support team of Kaspersky. They can provide personalized assistance based on your specific situation. It's important to regularly maintain and update your antivirus software, practice safe browsing habits, and exercise caution when downloading files or clicking on links to minimize the risk of malware infections.
-
Hello, After Installing a brand-new Kaspersky security center (14) server, I'm trying for several hours to install Kaspersky Agent on a computer wich I see in on the network. I've created a deployment task and I when I launch it manually the server indicates that it download the installer on the client, but the task stops and fails. I've deleted both task and agent and recreated it with the same result. here below the taks window : and the task properties : Do you see any mistake ? Thanks, Best regards Alexandre
- 1 reply
-
- 1