查看: 4788|回复: 4
收起左侧

[转帖] 小红伞的32位命令行版本

[复制链接]
布施大行
发表于 2009-4-2 10:28:55 | 显示全部楼层 |阅读模式
[推荐] 小红伞的32位命令行版本
官方下载链接:http://dlpro.antivir.com/down/windows/antivir_avcls_en.zip

用法:解压到硬盘上任意目录即可,主文件只有一个:avcls.exe。

版本似乎有点儿老(v7.06),但它却可以使用最新的引擎和病毒库,只要[url=]从官网下载最新的病毒库升级包[/url],然后解压到avcls.exe所在目录,再随便找一个key也放到该目录即可。

优点:喜欢命令行杀毒的当然知道命令行的好处,另外,该命令行版本应该可以直接用于各版本的PE(本人没有测试),而且,杀毒能力应该跟图形界面的版本相同。批处理高手可以随手写一个自动升级的小批处理,估计升级的方便性与正版的无异。

命令行简单示例:
avcls  -e %windir% %windir%\system32
avcls -s -e %windir%\system

-s 扫描子目录
-e 连扫带杀
估计常用的也就这两个参数了。

更多用法请参考:avcls /?
AntiVir/Win32-Console Version 7.6.0.59, (Jan 29 2008, 18:11:09)
Copyright(c) 2007 Avira GmbH

Usage is: AVCLS [options] [path[\*.ext]] [*.ext]

where options are:

-? / -h ......... display the help text

-allfiles ....... scan all files

-defext ......... use the default extension list for scanning

-allboot ........ scan all boot records

-alldrives ...... scan all drives

-allhard ........ scan all hard disks

-allremote ...... scan all network drives

-wub ............ save unknown boot records to file '.\UKB.SAV'

-s .............. scan subdirectories

-z .............. files in archives will be extracted and scanned

-noboot ......... do not check any boot records

-nombr .......... do not check any master boot records

-nobreak ........ disable Ctl-C and Ctrl-Break

-v .............. verbose scan mode

-nopack ......... do not scan inside packed files

-e [-del | -ren]  repair detected files if possible

                   [-del] non-repairable files will be deleted

                   [-ren] non-repairable files will be renamed

-ren ............ rename detected files (*.COM->*.VOM,...)

-del ............ delete detected files

-dmnoheur ....... disable macro heuristic

-dmdel .......... delete documents containing suspicious macros

-dmdas .......... delete all macros if one appears to be suspicious

-dmse ........... set exit code to 101 if any macro was found

-heuristic[:|=]1  heuristic detection rate low

-heuristic[:|=]2  heuristic detection rate medium

-heuristic[:|=]3  heuristic detection rate high

-r1 ............. just log infections and warnings

-r2 ............. log all scanned paths in addition

-r3 ............. log all scanned files

-r4 ............. select verbose log mode

-rs ............. select single-line log messages

-rf<filename> ... name of log file

                   ?d = day, ?m = month, ?y = year (two digits each)

-ra ............. append new log data to existing file

-ro ............. overwrite existing log file

-q .............. quiet mode

-lang[:|=]DE .... use German texts

-lang[:|=]EN .... use English texts

-once ........... run AVCLS only once a day

-tmp<dir> ....... specify the directory for temporary files

-x<dir> ......... AVCLS looks for its files e.g. 'antivir3.vdf' in <dir>

-if<filename> ... AVCLS uses the given ini file

-kf<filename> ... AVCLS uses the given license file

-with-<type> .... detect unwanted programs,

                   like "dial", "joke", "game", "bdc"

                   "heur-dblext", "pck", "spr", "adspy", "appl"

                   the following types are enabled by default:

                   "dial", "bdc", "heur-dblext", "adspy"

-without-<type>.. like --with-<type>, but disables this type

-alltypes ....... combination of all known -with-<type> options

-qua-<type> <dir> the quarantine function enables detected files

                   to be isolate in special

                   directory by specifying:

                   "qua-move <dir>", "qua-copy <dir>"

                   or rather "-qua-restore <dir>", "-qua-delete <dir>

                   to restore or delete files

@<rspfile> ...... read parameters from the file <rspfile>

                   with each option in a separate line



list of return codes:

   0: Normal program termination, no malware, no error

   1: Detection pattern was found in a file or boot sector

   2: A detection pattern was found in memory

   3: Suspicious file found

100: AVCLS only has displayed this help text

101: A macro was found in a document file

102: The parameter -once was given and AVCLS already ran today

200: Program aborted, not enough memory available

201: The given response file could not be found

202: Within a response file another @<rsp> directive was found

203: Invalid parameter

204: Invalid (non-existent) directory given at command line

205: The log file could not be created

210: AVCLS could not find a necessary dll file

211: Programm aborted, because the self check failed

212: Virus definition file could not be found or read error

213: An error occured during initialisation




examples:

   scan all files on drive C:

    AVCLS -s C:\*

   scan, repair & delete damaged/overwritten files on drives C: and D:

    AVCLS C:\ D:\ -s -e

331696902
发表于 2009-4-2 10:29:44 | 显示全部楼层
不懂……
fan4170
发表于 2009-4-2 10:35:46 | 显示全部楼层
有没有高手写好的批处理······
暗夜天使
发表于 2009-4-2 11:49:44 | 显示全部楼层
收藏了,好东西,顺便回顾下dos
子曰=2
发表于 2009-4-4 15:42:14 | 显示全部楼层
看不懂
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-5-1 06:55 , Processed in 0.138376 second(s), 16 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表