楼主: 日渐颓废的我们
收起左侧

[求助] 把卡巴斯基关闭然后装ESET会有不兼容问题吗?另外ESET有ICHECK那样的永久缓存机制吗?

[复制链接]
晓de朱雀_鼬
发表于 2014-1-21 13:32:44 | 显示全部楼层
日渐颓废的我们 发表于 2014-1-21 13:30
从15运行到现在,啥变化没有。去program file下面看卡巴斯基的安装文件夹,文件夹的大小一点变化没有。是 ...

哈?安全模式下也不行?不至于吧!安全模式都不加载驱动了,卡巴没这么牛吧
日渐颓废的我们
 楼主| 发表于 2014-1-21 13:43:30 | 显示全部楼层
本帖最后由 日渐颓废的我们 于 2014-1-21 13:46 编辑
晓de朱雀_鼬 发表于 2014-1-21 13:32
哈?安全模式下也不行?不至于吧!安全模式都不加载驱动了,卡巴没这么牛吧

其实我觉得很有可能是系统的问题……我用的是windows 8.1……
因为我看kavremover的错误报告
02:04:42.697 This OS is not supported
failed. Error 2: 系统找不到指定的文件。
  1. 1748:06d8 00:20:15.402 KAVRemover tool version 1.0.603
  2. 1748:06d8 00:20:15.402 System language detected: langID=9, sublangID=1
  3. 1748:06d8 00:20:15.402 User language detected: langID=4, sublangID=2
  4. 1748:06d8 00:20:15.402 Setting UI language: langID=9, sublangID=2
  5. 1748:06d8 00:20:15.402 Locale successfully set
  6. 1748:06d8 00:20:15.465 dbghelp.dll dumped OK
  7. 1748:06d8 00:20:17.137 Initializing application...
  8. 1748:06d8 00:20:17.277 Loading ini files...
  9. 1748:06d8 00:20:17.340 Loading resource data 'RES_INI_X64'...
  10. 1748:06d8 00:20:17.356 Loading resource data finished, 582623 bytes
  11. 1748:06d8 00:20:17.356 Loading resource data 'RES_INI_X32X64'...
  12. 1748:06d8 00:20:17.356 Loading resource data finished, 164734 bytes
  13. 1748:06d8 00:20:17.356 Parsing ini files data...
  14. 1748:06d8 00:20:17.402 Ini files data parsed, 28 files parsed
  15. 1748:06d8 00:20:17.402 Dumping data to files...
  16. 1748:06d8 00:20:17.402 Data dumped to files
  17. 1748:0708 00:20:17.481 Searching for installed products...
  18. 1748:0708 00:20:17.481 ShutdownDetector started watch thread (000002dc)
  19. 1748:070c 00:20:17.481 Watch thread started
  20. 1748:0708 00:20:17.496 Kaspersky Removal Tool 1.0.603
  21. 1748:0708 00:20:17.496 KLeaner initialized
  22. 1748:0708 00:20:17.496 OS Platform = NT, version = 6.3.9600, 64 bit
  23. 1748:0708 00:20:17.496 OS version ext PlatformId=2 CSDVersion="" SP=0.0 Suite=00000300 ProductType=1 Reserved=0
  24. 1748:0708 00:20:17.527 TraceSystemInfo: Time ticks=83265 ticks64=83265 idle=654.7187500 kernel=662.1562500 user=2.1093750
  25. 1748:0708 00:20:17.527 TraceSystemInfo: System oemId=00000009 pageSize=4096 MinAppAddress=00010000 MaxAppAddress=FFFEFFFF ActiveProcessorMask=000000FF NumberOfProcessors=8 ProcessorType=8664 AllocationGranularity=65536 ProcessorLevel=6 ProcessorRevision=15363
  26. 1748:0708 00:20:17.527 TraceSystemInfo: Memory Load=13 Phys=7204401152/8296615936 PageFile=7245656064/8296615936 Virtual=2016784384/2147352576 AvailExtendedVirtual=0
  27. 1748:0708 00:20:17.559 TraceSystemInfo: Performance commit(total=256578,limit=2025541,peak=259272 phis(total=2025541,avail=1758893) syscache=79207 kernel(total=50288,paged=29224,nonpaged=21064) page=4096 handles=5333 processes=22 threads=328
  28. 1748:0708 00:20:17.559 TraceTokenInformation: class=1(User) length=36 [User[Sid=S-1-5-21-4063754582-3048442541-3029454900-1002,Attributes=0]]
  29. 1748:0708 00:20:17.559 TraceTokenInformation: class=2(Groups) length=344 [GroupCount=14,[Sid=S-1-16-12288,Attributes=60],[Sid=S-1-1-0,Attributes=7],[Sid=S-1-5-114,Attributes=7],[Sid=S-1-5-32-544,Attributes=F],[Sid=S-1-5-32-545,Attributes=7],[Sid=S-1-5-4,Attributes=7],[Sid=S-1-2-1,Attributes=7],[Sid=S-1-5-11,Attributes=7],[Sid=S-1-5-15,Attributes=7],[Sid=S-1-11-96-3623454863-58364-18864-2661722203-1597581903-3005979970-2001990645-2405958475-1199014264-1064271294,Attributes=7],[Sid=S-1-5-113,Attributes=7],[Sid=S-1-5-5-0-125816,Attributes=C0000007],[Sid=S-1-2-0,Attributes=7],[Sid=S-1-5-64-32,Attributes=7]]
  30. 1748:0708 00:20:17.574 TraceTokenInformation: class=3(Privileges) length=280 [PrivilegeCount=23,[Luid=SeIncreaseQuotaPrivilege,Attributes=0],[Luid=SeSecurityPrivilege,Attributes=0],[Luid=SeTakeOwnershipPrivilege,Attributes=0],[Luid=SeLoadDriverPrivilege,Attributes=0],[Luid=SeSystemProfilePrivilege,Attributes=0],[Luid=SeSystemtimePrivilege,Attributes=0],[Luid=SeProfileSingleProcessPrivilege,Attributes=0],[Luid=SeIncreaseBasePriorityPrivilege,Attributes=0],[Luid=SeCreatePagefilePrivilege,Attributes=0],[Luid=SeBackupPrivilege,Attributes=0],[Luid=SeRestorePrivilege,Attributes=0],[Luid=SeShutdownPrivilege,Attributes=0],[Luid=SeDebugPrivilege,Attributes=0],[Luid=SeSystemEnvironmentPrivilege,Attributes=0],[Luid=SeChangeNotifyPrivilege,Attributes=3],[Luid=SeRemoteShutdownPrivilege,Attributes=0],[Luid=SeUndockPrivilege,Attributes=0],[Luid=SeManageVolumePrivilege,Attributes=0],[Luid=SeImpersonatePrivilege,Attributes=3],[Luid=SeCreateGlobalPrivilege,Attributes=3],[Luid=SeIncreaseWorkingSetPrivilege,Attributes=0],[Luid=SeTimeZonePrivilege,Attributes=0],[Luid=SeCreateSymbolicLinkPrivilege,Attributes=0]]
  31. 1748:0708 00:20:17.574 TraceTokenInformation: class=4(Owner) length=20 [Owner=S-1-5-32-544]
  32. 1748:0708 00:20:17.574 TraceTokenInformation: class=5(PrimaryGroup) length=32 [PrimaryGroup=S-1-5-21-4063754582-3048442541-3029454900-1002]
  33. 1748:0708 00:20:17.574 TraceTokenInformation: class=11(RestrictedSids) length=4 [GroupCount=0]
  34. 1748:0708 00:20:17.574 TraceTokenInformation: class=12(SessionId) length=4 [1(00000001)]
  35. 1748:0708 00:20:17.574 TraceTokenInformation: class=14(SessionReference) length=1 GetInfo fail error=87
  36. 1748:0708 00:20:17.574 TraceTokenInformation: class=15(SandBoxInert) length=4 [0(00000000)]
  37. 1748:0708 00:20:17.574 TraceTokenInformation: class=16(AuditPolicy) length=1 GetInfo fail error=1314
  38. 1748:0708 00:20:17.574 KLeaner is looking in C:\Users\user~1\AppData\Local\Temp\jkbasuy1\xsxfr\ for *.ini...
  39. 1748:0708 00:20:17.574 file found: df0.ini
  40. 1748:0708 00:20:17.590 msiParams=''
  41. 1748:0708 00:20:17.590 hexUninstallPassword=''
  42. 1748:0708 00:20:17.590 This OS is not supported
  43. 1748:0708 00:20:17.590 no detect
  44. 1748:0708 00:20:17.590 file found: df1.ini
  45. 1748:0708 00:20:17.606 msiParams=''
  46. 1748:0708 00:20:17.606 hexUninstallPassword=''
  47. 1748:0708 00:20:17.606 This OS is not supported
  48. 1748:0708 00:20:17.606 no detect
  49. 1748:0708 00:20:17.606 file found: df10.ini
  50. 1748:0708 00:20:17.606 msiParams=''
  51. 1748:0708 00:20:17.606 hexUninstallPassword=''
  52. 1748:0708 00:20:17.715 no detect
  53. 1748:0708 00:20:17.715 file found: df11.ini
  54. 1748:0708 00:20:17.715 msiParams=''
  55. 1748:0708 00:20:17.715 hexUninstallPassword=''
  56. 1748:0708 00:20:17.715 no detect
  57. 1748:0708 00:20:17.715 file found: df12.ini
  58. 1748:0708 00:20:17.731 msiParams=''
  59. 1748:0708 00:20:17.731 hexUninstallPassword=''
  60. 1748:0708 00:20:17.731 no detect
  61. 1748:0708 00:20:17.731 file found: df13.ini
  62. 1748:0708 00:20:17.731 msiParams=''
  63. 1748:0708 00:20:17.731 hexUninstallPassword=''
  64. 1748:0708 00:20:17.731 no detect
  65. 1748:0708 00:20:17.731 file found: df14.ini
  66. 1748:0708 00:20:17.731 msiParams=''
  67. 1748:0708 00:20:17.731 hexUninstallPassword=''
  68. 1748:0708 00:20:17.731 This OS is not supported
  69. 1748:0708 00:20:17.731 no detect
  70. 1748:0708 00:20:17.731 file found: df15.ini
  71. 1748:0708 00:20:17.746 msiParams=''
  72. 1748:0708 00:20:17.746 hexUninstallPassword=''
  73. 1748:0708 00:20:17.746 This OS is not supported
  74. 1748:0708 00:20:17.746 no detect
  75. 1748:0708 00:20:17.746 file found: df16.ini
  76. 1748:0708 00:20:17.746 msiParams=''
  77. 1748:0708 00:20:17.746 hexUninstallPassword=''
  78. 1748:0708 00:20:17.746 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x08000000,MaxVersion=0x09FFFFFF'
  79. 1748:0708 00:20:17.746 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,134217728 MaxVersion=true,167772159
  80. 1748:0708 00:20:17.762 RegOpenKeyEx(0000033CH\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  81. 1748:0708 00:20:17.762 Fail! get upgrade code key error: err 2
  82. 1748:0708 00:20:17.762 no detect
  83. 1748:0708 00:20:17.762 file found: df17.ini
  84. 1748:0708 00:20:17.762 msiParams=''
  85. 1748:0708 00:20:17.762 hexUninstallPassword=''
  86. 1748:0708 00:20:17.762 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x0A000000,MaxVersion=0x0AFFFFFF'
  87. 1748:0708 00:20:17.762 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,167772160 MaxVersion=true,184549375
  88. 1748:0708 00:20:17.762 RegOpenKeyEx(0000033CH\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  89. 1748:0708 00:20:17.762 Fail! get upgrade code key error: err 2
  90. 1748:0708 00:20:17.762 no detect
  91. 1748:0708 00:20:17.762 file found: df18.ini
  92. 1748:0708 00:20:17.762 msiParams=''
  93. 1748:0708 00:20:17.762 hexUninstallPassword=''
  94. 1748:0708 00:20:17.762 no detect
  95. 1748:0708 00:20:17.762 file found: df19.ini
  96. 1748:0708 00:20:17.777 msiParams=''
  97. 1748:0708 00:20:17.777 hexUninstallPassword=''
  98. 1748:0708 00:20:17.777 found Kaspersky PURE 3.0 / CRYSTAL
  99. 1748:0708 00:20:17.777 file found: df2.ini
  100. 1748:0708 00:20:17.777 msiParams=''
  101. 1748:0708 00:20:17.777 hexUninstallPassword=''
  102. 1748:0708 00:20:17.777 no detect
  103. 1748:0708 00:20:17.777 file found: df20.ini
  104. 1748:0708 00:20:17.777 msiParams=''
  105. 1748:0708 00:20:17.777 hexUninstallPassword=''
  106. 1748:0708 00:20:17.777 This OS is not supported
  107. 1748:0708 00:20:17.777 no detect
  108. 1748:0708 00:20:17.777 file found: df21.ini
  109. 1748:0708 00:20:17.777 msiParams=''
  110. 1748:0708 00:20:17.777 hexUninstallPassword=''
  111. 1748:0708 00:20:17.777 This OS is not supported
  112. 1748:0708 00:20:17.777 no detect
  113. 1748:0708 00:20:17.777 file found: df22.ini
  114. 1748:0708 00:20:17.793 msiParams=''
  115. 1748:0708 00:20:17.793 hexUninstallPassword=''
  116. 1748:0708 00:20:17.793 no detect
  117. 1748:0708 00:20:17.793 file found: df23.ini
  118. 1748:0708 00:20:17.793 msiParams=''
  119. 1748:0708 00:20:17.793 hexUninstallPassword=''
  120. 1748:0708 00:20:17.793 no detect
  121. 1748:0708 00:20:17.793 file found: df24.ini
  122. 1748:0708 00:20:17.809 msiParams=''
  123. 1748:0708 00:20:17.809 hexUninstallPassword=''
  124. 1748:0708 00:20:17.809 no detect
  125. 1748:0708 00:20:17.809 file found: df25.ini
  126. 1748:0708 00:20:17.809 msiParams=''
  127. 1748:0708 00:20:17.809 hexUninstallPassword=''
  128. 1748:0708 00:20:17.809 no detect
  129. 1748:0708 00:20:17.809 file found: df26.ini
  130. 1748:0708 00:20:17.809 msiParams=''
  131. 1748:0708 00:20:17.809 hexUninstallPassword=''
  132. 1748:0708 00:20:17.809 no detect
  133. 1748:0708 00:20:17.809 file found: df27.ini
  134. 1748:0708 00:20:17.809 msiParams=''
  135. 1748:0708 00:20:17.809 hexUninstallPassword=''
  136. 1748:0708 00:20:17.809 This OS is not supported
  137. 1748:0708 00:20:17.809 no detect
  138. 1748:0708 00:20:17.809 file found: df3.ini
  139. 1748:0708 00:20:17.809 msiParams=''
  140. 1748:0708 00:20:17.809 hexUninstallPassword=''
  141. 1748:0708 00:20:17.809 This OS is not supported
  142. 1748:0708 00:20:17.809 no detect
  143. 1748:0708 00:20:17.809 file found: df4.ini
  144. 1748:0708 00:20:17.824 msiParams=''
  145. 1748:0708 00:20:17.824 hexUninstallPassword=''
  146. 1748:0708 00:20:17.824 This OS is not supported
  147. 1748:0708 00:20:17.824 no detect
  148. 1748:0708 00:20:17.824 file found: df5.ini
  149. 1748:0708 00:20:17.824 msiParams=''
  150. 1748:0708 00:20:17.824 hexUninstallPassword=''
  151. 1748:0708 00:20:17.824 This OS is not supported
  152. 1748:0708 00:20:17.824 no detect
  153. 1748:0708 00:20:17.824 file found: df6.ini
  154. 1748:0708 00:20:17.824 msiParams=''
  155. 1748:0708 00:20:17.824 hexUninstallPassword=''
  156. 1748:0708 00:20:17.824 This OS is not supported
  157. 1748:0708 00:20:17.824 no detect
  158. 1748:0708 00:20:17.824 file found: df7.ini
  159. 1748:0708 00:20:17.824 msiParams=''
  160. 1748:0708 00:20:17.824 hexUninstallPassword=''
  161. 1748:0708 00:20:17.824 no detect
  162. 1748:0708 00:20:17.824 file found: df8.ini
  163. 1748:0708 00:20:17.840 msiParams=''
  164. 1748:0708 00:20:17.840 hexUninstallPassword=''
  165. 1748:0708 00:20:17.840 This OS is not supported
  166. 1748:0708 00:20:17.840 no detect
  167. 1748:0708 00:20:17.840 file found: df9.ini
  168. 1748:0708 00:20:17.840 msiParams=''
  169. 1748:0708 00:20:17.840 hexUninstallPassword=''
  170. 1748:0708 00:20:17.840 no detect
  171. 1748:0708 00:20:17.856 Searching finished, product detected.
  172. 1748:0708 00:20:17.856 KLeaner deinitialized
  173. 1748:0708 00:20:17.856 Stopping shutdown detector...
  174. 1748:0708 00:20:17.856 Waiting for watch thread stop...
  175. 1748:070c 00:20:17.856 Watch thread finished
  176. 1748:0708 00:20:17.856 Watch thread was stopped
  177. 1748:0738 00:20:34.715 Removing selected product: Kaspersky PURE 3.0 / CRYSTAL.
  178. 1748:0738 00:20:34.715 ShutdownDetector started watch thread (00000358)
  179. 1748:073c 00:20:34.715 Watch thread started
  180. 1748:0738 00:20:34.715 Kaspersky Removal Tool 1.0.603
  181. 1748:0738 00:20:34.715 KLeaner initialized
  182. 1748:0738 00:20:34.715 OS Platform = NT, version = 6.3.9600, 64 bit
  183. 1748:0738 00:20:34.715 OS version ext PlatformId=2 CSDVersion="" SP=0.0 Suite=00000300 ProductType=1 Reserved=0
  184. 1748:0738 00:20:34.715 TraceSystemInfo: Time ticks=100484 ticks64=100484 idle=792.0625000 kernel=799.7187500 user=2.2968750
  185. 1748:0738 00:20:34.715 TraceSystemInfo: System oemId=00000009 pageSize=4096 MinAppAddress=00010000 MaxAppAddress=FFFEFFFF ActiveProcessorMask=000000FF NumberOfProcessors=8 ProcessorType=8664 AllocationGranularity=65536 ProcessorLevel=6 ProcessorRevision=15363
  186. 1748:0738 00:20:34.715 TraceSystemInfo: Memory Load=13 Phys=7198756864/8296615936 PageFile=7252299776/8296615936 Virtual=1961287680/2147352576 AvailExtendedVirtual=0
  187. 1748:0738 00:20:34.715 TraceSystemInfo: Performance commit(total=254960,limit=2025541,peak=259272 phis(total=2025541,avail=1757509) syscache=80347 kernel(total=50350,paged=29283,nonpaged=21067) page=4096 handles=5153 processes=21 threads=312
  188. 1748:0738 00:20:34.715 TraceTokenInformation: class=1(User) length=36 [User[Sid=S-1-5-21-4063754582-3048442541-3029454900-1002,Attributes=0]]
  189. 1748:0738 00:20:34.715 TraceTokenInformation: class=2(Groups) length=344 [GroupCount=14,[Sid=S-1-16-12288,Attributes=60],[Sid=S-1-1-0,Attributes=7],[Sid=S-1-5-114,Attributes=7],[Sid=S-1-5-32-544,Attributes=F],[Sid=S-1-5-32-545,Attributes=7],[Sid=S-1-5-4,Attributes=7],[Sid=S-1-2-1,Attributes=7],[Sid=S-1-5-11,Attributes=7],[Sid=S-1-5-15,Attributes=7],[Sid=S-1-11-96-3623454863-58364-18864-2661722203-1597581903-3005979970-2001990645-2405958475-1199014264-1064271294,Attributes=7],[Sid=S-1-5-113,Attributes=7],[Sid=S-1-5-5-0-125816,Attributes=C0000007],[Sid=S-1-2-0,Attributes=7],[Sid=S-1-5-64-32,Attributes=7]]
  190. 1748:0738 00:20:34.715 TraceTokenInformation: class=3(Privileges) length=280 [PrivilegeCount=23,[Luid=SeIncreaseQuotaPrivilege,Attributes=0],[Luid=SeSecurityPrivilege,Attributes=0],[Luid=SeTakeOwnershipPrivilege,Attributes=0],[Luid=SeLoadDriverPrivilege,Attributes=0],[Luid=SeSystemProfilePrivilege,Attributes=0],[Luid=SeSystemtimePrivilege,Attributes=0],[Luid=SeProfileSingleProcessPrivilege,Attributes=0],[Luid=SeIncreaseBasePriorityPrivilege,Attributes=0],[Luid=SeCreatePagefilePrivilege,Attributes=0],[Luid=SeBackupPrivilege,Attributes=0],[Luid=SeRestorePrivilege,Attributes=0],[Luid=SeShutdownPrivilege,Attributes=0],[Luid=SeDebugPrivilege,Attributes=0],[Luid=SeSystemEnvironmentPrivilege,Attributes=0],[Luid=SeChangeNotifyPrivilege,Attributes=3],[Luid=SeRemoteShutdownPrivilege,Attributes=0],[Luid=SeUndockPrivilege,Attributes=0],[Luid=SeManageVolumePrivilege,Attributes=0],[Luid=SeImpersonatePrivilege,Attributes=3],[Luid=SeCreateGlobalPrivilege,Attributes=3],[Luid=SeIncreaseWorkingSetPrivilege,Attributes=0],[Luid=SeTimeZonePrivilege,Attributes=0],[Luid=SeCreateSymbolicLinkPrivilege,Attributes=0]]
  191. 1748:0738 00:20:34.715 TraceTokenInformation: class=4(Owner) length=20 [Owner=S-1-5-32-544]
  192. 1748:0738 00:20:34.715 TraceTokenInformation: class=5(PrimaryGroup) length=32 [PrimaryGroup=S-1-5-21-4063754582-3048442541-3029454900-1002]
  193. 1748:0738 00:20:34.715 TraceTokenInformation: class=11(RestrictedSids) length=4 [GroupCount=0]
  194. 1748:0738 00:20:34.715 TraceTokenInformation: class=12(SessionId) length=4 [1(00000001)]
  195. 1748:0738 00:20:34.715 TraceTokenInformation: class=14(SessionReference) length=1 GetInfo fail error=87
  196. 1748:0738 00:20:34.715 TraceTokenInformation: class=15(SandBoxInert) length=4 [0(00000000)]
  197. 1748:0738 00:20:34.715 TraceTokenInformation: class=16(AuditPolicy) length=1 GetInfo fail error=1314
  198. 1748:0738 00:20:34.715 KLeaner is looking in C:\Users\user~1\AppData\Local\Temp\jkbasuy1\xsxfr\ for *.ini...
  199. 1748:0738 00:20:34.715 file found: df0.ini
  200. 1748:0738 00:20:34.715 msiParams=''
  201. 1748:0738 00:20:34.715 hexUninstallPassword=''
  202. 1748:0738 00:20:34.715 This OS is not supported
  203. 1748:0738 00:20:34.715 no detect
  204. 1748:0738 00:20:34.715 file found: df1.ini
  205. 1748:0738 00:20:34.715 msiParams=''
  206. 1748:0738 00:20:34.715 hexUninstallPassword=''
  207. 1748:0738 00:20:34.715 This OS is not supported
  208. 1748:0738 00:20:34.715 no detect
  209. 1748:0738 00:20:34.715 file found: df10.ini
  210. 1748:0738 00:20:34.731 msiParams=''
  211. 1748:0738 00:20:34.731 hexUninstallPassword=''
  212. 1748:0738 00:20:34.731 no detect
  213. 1748:0738 00:20:34.731 file found: df11.ini
  214. 1748:0738 00:20:34.731 msiParams=''
  215. 1748:0738 00:20:34.731 hexUninstallPassword=''
  216. 1748:0738 00:20:34.731 no detect
  217. 1748:0738 00:20:34.731 file found: df12.ini
  218. 1748:0738 00:20:34.746 msiParams=''
  219. 1748:0738 00:20:34.746 hexUninstallPassword=''
  220. 1748:0738 00:20:34.746 no detect
  221. 1748:0738 00:20:34.746 file found: df13.ini
  222. 1748:0738 00:20:34.746 msiParams=''
  223. 1748:0738 00:20:34.746 hexUninstallPassword=''
  224. 1748:0738 00:20:34.746 no detect
  225. 1748:0738 00:20:34.746 file found: df14.ini
  226. 1748:0738 00:20:34.746 msiParams=''
  227. 1748:0738 00:20:34.746 hexUninstallPassword=''
  228. 1748:0738 00:20:34.746 This OS is not supported
  229. 1748:0738 00:20:34.746 no detect
  230. 1748:0738 00:20:34.746 file found: df15.ini
  231. 1748:0738 00:20:34.762 msiParams=''
  232. 1748:0738 00:20:34.762 hexUninstallPassword=''
  233. 1748:0738 00:20:34.762 This OS is not supported
  234. 1748:0738 00:20:34.762 no detect
  235. 1748:0738 00:20:34.762 file found: df16.ini
  236. 1748:0738 00:20:34.762 msiParams=''
  237. 1748:0738 00:20:34.762 hexUninstallPassword=''
  238. 1748:0738 00:20:34.762 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x08000000,MaxVersion=0x09FFFFFF'
  239. 1748:0738 00:20:34.762 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,134217728 MaxVersion=true,167772159
  240. 1748:0738 00:20:34.762 RegOpenKeyEx(00000370H\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  241. 1748:0738 00:20:34.762 Fail! get upgrade code key error: err 2
  242. 1748:0738 00:20:34.762 no detect
  243. 1748:0738 00:20:34.762 file found: df17.ini
  244. 1748:0738 00:20:34.762 msiParams=''
  245. 1748:0738 00:20:34.762 hexUninstallPassword=''
  246. 1748:0738 00:20:34.762 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x0A000000,MaxVersion=0x0AFFFFFF'
  247. 1748:0738 00:20:34.762 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,167772160 MaxVersion=true,184549375
  248. 1748:0738 00:20:34.762 RegOpenKeyEx(00000370H\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  249. 1748:0738 00:20:34.762 Fail! get upgrade code key error: err 2
  250. 1748:0738 00:20:34.762 no detect
  251. 1748:0738 00:20:34.762 file found: df18.ini
  252. 1748:0738 00:20:34.778 msiParams=''
  253. 1748:0738 00:20:34.778 hexUninstallPassword=''
  254. 1748:0738 00:20:34.778 no detect
  255. 1748:0738 00:20:34.778 file found: df19.ini
  256. 1748:0738 00:20:34.778 msiParams=''
  257. 1748:0738 00:20:34.778 hexUninstallPassword=''
  258. 1748:0738 00:20:34.778 found Kaspersky PURE 3.0 / CRYSTAL
  259. 1748:0738 00:20:34.778 AllowRemove:Invalid CAPTCHA entered
  260. 1748:0738 00:20:34.778 file found: df2.ini
  261. 1748:0738 00:20:34.778 msiParams=''
  262. 1748:0738 00:20:34.778 hexUninstallPassword=''
  263. 1748:0738 00:20:34.778 no detect
  264. 1748:0738 00:20:34.778 file found: df20.ini
  265. 1748:0738 00:20:34.793 msiParams=''
  266. 1748:0738 00:20:34.793 hexUninstallPassword=''
  267. 1748:0738 00:20:34.793 This OS is not supported
  268. 1748:0738 00:20:34.793 no detect
  269. 1748:0738 00:20:34.793 file found: df21.ini
  270. 1748:0738 00:20:34.793 msiParams=''
  271. 1748:0738 00:20:34.793 hexUninstallPassword=''
  272. 1748:0738 00:20:34.793 This OS is not supported
  273. 1748:0738 00:20:34.793 no detect
  274. 1748:0738 00:20:34.793 file found: df22.ini
  275. 1748:0738 00:20:34.793 msiParams=''
  276. 1748:0738 00:20:34.793 hexUninstallPassword=''
  277. 1748:0738 00:20:34.793 no detect
  278. 1748:0738 00:20:34.793 file found: df23.ini
  279. 1748:0738 00:20:34.809 msiParams=''
  280. 1748:0738 00:20:34.809 hexUninstallPassword=''
  281. 1748:0738 00:20:34.809 no detect
  282. 1748:0738 00:20:34.809 file found: df24.ini
  283. 1748:0738 00:20:34.809 msiParams=''
  284. 1748:0738 00:20:34.809 hexUninstallPassword=''
  285. 1748:0738 00:20:34.809 no detect
  286. 1748:0738 00:20:34.809 file found: df25.ini
  287. 1748:0738 00:20:34.809 msiParams=''
  288. 1748:0738 00:20:34.809 hexUninstallPassword=''
  289. 1748:0738 00:20:34.809 no detect
  290. 1748:0738 00:20:34.809 file found: df26.ini
  291. 1748:0738 00:20:34.824 msiParams=''
  292. 1748:0738 00:20:34.824 hexUninstallPassword=''
  293. 1748:0738 00:20:34.824 no detect
  294. 1748:0738 00:20:34.824 file found: df27.ini
  295. 1748:0738 00:20:34.824 msiParams=''
  296. 1748:0738 00:20:34.824 hexUninstallPassword=''
  297. 1748:0738 00:20:34.824 This OS is not supported
  298. 1748:0738 00:20:34.824 no detect
  299. 1748:0738 00:20:34.824 file found: df3.ini
  300. 1748:0738 00:20:34.824 msiParams=''
  301. 1748:0738 00:20:34.824 hexUninstallPassword=''
  302. 1748:0738 00:20:34.824 This OS is not supported
  303. 1748:0738 00:20:34.824 no detect
  304. 1748:0738 00:20:34.824 file found: df4.ini
  305. 1748:0738 00:20:34.824 msiParams=''
  306. 1748:0738 00:20:34.824 hexUninstallPassword=''
  307. 1748:0738 00:20:34.824 This OS is not supported
  308. 1748:0738 00:20:34.824 no detect
  309. 1748:0738 00:20:34.824 file found: df5.ini
  310. 1748:0738 00:20:34.824 msiParams=''
  311. 1748:0738 00:20:34.824 hexUninstallPassword=''
  312. 1748:0738 00:20:34.824 This OS is not supported
  313. 1748:0738 00:20:34.824 no detect
  314. 1748:0738 00:20:34.824 file found: df6.ini
  315. 1748:0738 00:20:34.840 msiParams=''
  316. 1748:0738 00:20:34.840 hexUninstallPassword=''
  317. 1748:0738 00:20:34.840 This OS is not supported
  318. 1748:0738 00:20:34.840 no detect
  319. 1748:0738 00:20:34.840 file found: df7.ini
  320. 1748:0738 00:20:34.840 msiParams=''
  321. 1748:0738 00:20:34.840 hexUninstallPassword=''
  322. 1748:0738 00:20:34.840 no detect
  323. 1748:0738 00:20:34.840 file found: df8.ini
  324. 1748:0738 00:20:34.840 msiParams=''
  325. 1748:0738 00:20:34.840 hexUninstallPassword=''
  326. 1748:0738 00:20:34.840 This OS is not supported
  327. 1748:0738 00:20:34.840 no detect
  328. 1748:0738 00:20:34.840 file found: df9.ini
  329. 1748:0738 00:20:34.840 msiParams=''
  330. 1748:0738 00:20:34.840 hexUninstallPassword=''
  331. 1748:0738 00:20:34.840 no detect
  332. 1748:0738 00:20:34.840 Remove failed
  333. 1748:0738 00:20:34.840 KLeaner deinitialized
  334. 1748:0738 00:20:34.840 Stopping shutdown detector...
  335. 1748:0738 00:20:34.840 Waiting for watch thread stop...
  336. 1748:073c 00:20:34.840 Watch thread finished
  337. 1748:0738 00:20:34.840 Watch thread was stopped
  338. 1748:0740 00:20:46.903 Removing selected product: Kaspersky PURE 3.0 / CRYSTAL.
  339. 1748:0740 00:20:46.903 ShutdownDetector started watch thread (00000370)
  340. 1748:0744 00:20:46.903 Watch thread started
  341. 1748:0740 00:20:46.903 Kaspersky Removal Tool 1.0.603
  342. 1748:0740 00:20:46.903 KLeaner initialized
  343. 1748:0740 00:20:46.903 OS Platform = NT, version = 6.3.9600, 64 bit
  344. 1748:0740 00:20:46.903 OS version ext PlatformId=2 CSDVersion="" SP=0.0 Suite=00000300 ProductType=1 Reserved=0
  345. 1748:0740 00:20:46.903 TraceSystemInfo: Time ticks=112671 ticks64=112671 idle=889.2187500 kernel=897.0937500 user=2.4218750
  346. 1748:0740 00:20:46.903 TraceSystemInfo: System oemId=00000009 pageSize=4096 MinAppAddress=00010000 MaxAppAddress=FFFEFFFF ActiveProcessorMask=000000FF NumberOfProcessors=8 ProcessorType=8664 AllocationGranularity=65536 ProcessorLevel=6 ProcessorRevision=15363
  347. 1748:0740 00:20:46.903 TraceSystemInfo: Memory Load=13 Phys=7199051776/8296615936 PageFile=7253139456/8296615936 Virtual=1961287680/2147352576 AvailExtendedVirtual=0
  348. 1748:0740 00:20:46.903 TraceSystemInfo: Performance commit(total=254755,limit=2025541,peak=259272 phis(total=2025541,avail=1757581) syscache=80357 kernel(total=50350,paged=29283,nonpaged=21067) page=4096 handles=5045 processes=21 threads=296
  349. 1748:0740 00:20:46.903 TraceTokenInformation: class=1(User) length=36 [User[Sid=S-1-5-21-4063754582-3048442541-3029454900-1002,Attributes=0]]
  350. 1748:0740 00:20:46.903 TraceTokenInformation: class=2(Groups) length=344 [GroupCount=14,[Sid=S-1-16-12288,Attributes=60],[Sid=S-1-1-0,Attributes=7],[Sid=S-1-5-114,Attributes=7],[Sid=S-1-5-32-544,Attributes=F],[Sid=S-1-5-32-545,Attributes=7],[Sid=S-1-5-4,Attributes=7],[Sid=S-1-2-1,Attributes=7],[Sid=S-1-5-11,Attributes=7],[Sid=S-1-5-15,Attributes=7],[Sid=S-1-11-96-3623454863-58364-18864-2661722203-1597581903-3005979970-2001990645-2405958475-1199014264-1064271294,Attributes=7],[Sid=S-1-5-113,Attributes=7],[Sid=S-1-5-5-0-125816,Attributes=C0000007],[Sid=S-1-2-0,Attributes=7],[Sid=S-1-5-64-32,Attributes=7]]
  351. 1748:0740 00:20:46.918 TraceTokenInformation: class=3(Privileges) length=280 [PrivilegeCount=23,[Luid=SeIncreaseQuotaPrivilege,Attributes=0],[Luid=SeSecurityPrivilege,Attributes=0],[Luid=SeTakeOwnershipPrivilege,Attributes=0],[Luid=SeLoadDriverPrivilege,Attributes=0],[Luid=SeSystemProfilePrivilege,Attributes=0],[Luid=SeSystemtimePrivilege,Attributes=0],[Luid=SeProfileSingleProcessPrivilege,Attributes=0],[Luid=SeIncreaseBasePriorityPrivilege,Attributes=0],[Luid=SeCreatePagefilePrivilege,Attributes=0],[Luid=SeBackupPrivilege,Attributes=0],[Luid=SeRestorePrivilege,Attributes=0],[Luid=SeShutdownPrivilege,Attributes=0],[Luid=SeDebugPrivilege,Attributes=0],[Luid=SeSystemEnvironmentPrivilege,Attributes=0],[Luid=SeChangeNotifyPrivilege,Attributes=3],[Luid=SeRemoteShutdownPrivilege,Attributes=0],[Luid=SeUndockPrivilege,Attributes=0],[Luid=SeManageVolumePrivilege,Attributes=0],[Luid=SeImpersonatePrivilege,Attributes=3],[Luid=SeCreateGlobalPrivilege,Attributes=3],[Luid=SeIncreaseWorkingSetPrivilege,Attributes=0],[Luid=SeTimeZonePrivilege,Attributes=0],[Luid=SeCreateSymbolicLinkPrivilege,Attributes=0]]
  352. 1748:0740 00:20:46.918 TraceTokenInformation: class=4(Owner) length=20 [Owner=S-1-5-32-544]
  353. 1748:0740 00:20:46.918 TraceTokenInformation: class=5(PrimaryGroup) length=32 [PrimaryGroup=S-1-5-21-4063754582-3048442541-3029454900-1002]
  354. 1748:0740 00:20:46.918 TraceTokenInformation: class=11(RestrictedSids) length=4 [GroupCount=0]
  355. 1748:0740 00:20:46.918 TraceTokenInformation: class=12(SessionId) length=4 [1(00000001)]
  356. 1748:0740 00:20:46.918 TraceTokenInformation: class=14(SessionReference) length=1 GetInfo fail error=87
  357. 1748:0740 00:20:46.918 TraceTokenInformation: class=15(SandBoxInert) length=4 [0(00000000)]
  358. 1748:0740 00:20:46.918 TraceTokenInformation: class=16(AuditPolicy) length=1 GetInfo fail error=1314
  359. 1748:0740 00:20:46.918 KLeaner is looking in C:\Users\user~1\AppData\Local\Temp\jkbasuy1\xsxfr\ for *.ini...
  360. 1748:0740 00:20:46.918 file found: df0.ini
  361. 1748:0740 00:20:46.934 msiParams=''
  362. 1748:0740 00:20:46.934 hexUninstallPassword=''
  363. 1748:0740 00:20:46.934 This OS is not supported
  364. 1748:0740 00:20:46.934 no detect
  365. 1748:0740 00:20:46.934 file found: df1.ini
  366. 1748:0740 00:20:46.934 msiParams=''
  367. 1748:0740 00:20:46.934 hexUninstallPassword=''
  368. 1748:0740 00:20:46.934 This OS is not supported
  369. 1748:0740 00:20:46.934 no detect
  370. 1748:0740 00:20:46.934 file found: df10.ini
  371. 1748:0740 00:20:46.934 msiParams=''
  372. 1748:0740 00:20:46.934 hexUninstallPassword=''
  373. 1748:0740 00:20:46.934 no detect
  374. 1748:0740 00:20:46.934 file found: df11.ini
  375. 1748:0740 00:20:46.950 msiParams=''
  376. 1748:0740 00:20:46.950 hexUninstallPassword=''
  377. 1748:0740 00:20:46.950 no detect
  378. 1748:0740 00:20:46.950 file found: df12.ini
  379. 1748:0740 00:20:46.950 msiParams=''
  380. 1748:0740 00:20:46.950 hexUninstallPassword=''
  381. 1748:0740 00:20:46.950 no detect
  382. 1748:0740 00:20:46.950 file found: df13.ini
  383. 1748:0740 00:20:46.965 msiParams=''
  384. 1748:0740 00:20:46.965 hexUninstallPassword=''
  385. 1748:0740 00:20:46.965 no detect
  386. 1748:0740 00:20:46.965 file found: df14.ini
  387. 1748:0740 00:20:46.965 msiParams=''
  388. 1748:0740 00:20:46.965 hexUninstallPassword=''
  389. 1748:0740 00:20:46.965 This OS is not supported
  390. 1748:0740 00:20:46.965 no detect
  391. 1748:0740 00:20:46.965 file found: df15.ini
  392. 1748:0740 00:20:46.965 msiParams=''
  393. 1748:0740 00:20:46.965 hexUninstallPassword=''
  394. 1748:0740 00:20:46.965 This OS is not supported
  395. 1748:0740 00:20:46.965 no detect
  396. 1748:0740 00:20:46.965 file found: df16.ini
  397. 1748:0740 00:20:46.965 msiParams=''
  398. 1748:0740 00:20:46.965 hexUninstallPassword=''
  399. 1748:0740 00:20:46.965 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x08000000,MaxVersion=0x09FFFFFF'
  400. 1748:0740 00:20:46.965 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,134217728 MaxVersion=true,167772159
  401. 1748:0740 00:20:46.965 RegOpenKeyEx(0000031CH\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  402. 1748:0740 00:20:46.965 Fail! get upgrade code key error: err 2
  403. 1748:0740 00:20:46.965 no detect
  404. 1748:0740 00:20:46.965 file found: df17.ini
  405. 1748:0740 00:20:46.965 msiParams=''
  406. 1748:0740 00:20:46.965 hexUninstallPassword=''
  407. 1748:0740 00:20:46.981 Detecting upgrade code '5278159B67B039744A906C974424BF05,MinVersion=0x0A000000,MaxVersion=0x0AFFFFFF'
  408. 1748:0740 00:20:46.981 upgrade-code='5278159B67B039744A906C974424BF05' MinVersion=true,167772160 MaxVersion=true,184549375
  409. 1748:0740 00:20:46.981 RegOpenKeyEx(0000031CH\5278159B67B039744A906C974424BF05) failed. Error 2: 系统找不到指定的文件。.
  410. 1748:0740 00:20:46.981 Fail! get upgrade code key error: err 2
  411. 1748:0740 00:20:46.981 no detect
  412. 1748:0740 00:20:46.981 file found: df18.ini
  413. 1748:0740 00:20:46.981 msiParams=''
  414. 1748:0740 00:20:46.981 hexUninstallPassword=''
  415. 1748:0740 00:20:46.981 no detect
  416. 1748:0740 00:20:46.981 file found: df19.ini
  417. 1748:0740 00:20:46.981 msiParams=''
  418. 1748:0740 00:20:46.981 hexUninstallPassword=''
  419. 1748:0740 00:20:46.981 found Kaspersky PURE 3.0 / CRYSTAL
  420. 1748:0740 00:20:46.981 removing...
  421. 1748:0740 00:20:46.981 TraceSystemInfo: Time ticks=112750 ticks64=112750 idle=889.7343750 kernel=897.6718750 user=2.4687500
  422. 1748:0740 00:20:46.981 TraceSystemInfo: System oemId=00000009 pageSize=4096 MinAppAddress=00010000 MaxAppAddress=FFFEFFFF ActiveProcessorMask=000000FF NumberOfProcessors=8 ProcessorType=8664 AllocationGranularity=65536 ProcessorLevel=6 ProcessorRevision=15363
  423. 1748:0740 00:20:46.981 TraceSystemInfo: Memory Load=13 Phys=7198593024/8296615936 PageFile=7252692992/8296615936 Virtual=1961287680/2147352576 AvailExtendedVirtual=0
  424. 1748:0740 00:20:46.981 TraceSystemInfo: Performance commit(total=254864,limit=2025541,peak=259272 phis(total=2025541,avail=1757469) syscache=80345 kernel(total=50350,paged=29283,nonpaged=21067) page=4096 handles=5049 processes=21 threads=296
  425. 1748:0740 00:20:46.981 TraceTokenInformation: class=1(User) length=36 [User[Sid=S-1-5-21-4063754582-3048442541-3029454900-1002,Attributes=0]]
  426. 1748:0740 00:20:46.981 TraceTokenInformation: class=2(Groups) length=344 [GroupCount=14,[Sid=S-1-16-12288,Attributes=60],[Sid=S-1-1-0,Attributes=7],[Sid=S-1-5-114,Attributes=7],[Sid=S-1-5-32-544,Attributes=F],[Sid=S-1-5-32-545,Attributes=7],[Sid=S-1-5-4,Attributes=7],[Sid=S-1-2-1,Attributes=7],[Sid=S-1-5-11,Attributes=7],[Sid=S-1-5-15,Attributes=7],[Sid=S-1-11-96-3623454863-58364-18864-2661722203-1597581903-3005979970-2001990645-2405958475-1199014264-1064271294,Attributes=7],[Sid=S-1-5-113,Attributes=7],[Sid=S-1-5-5-0-125816,Attributes=C0000007],[Sid=S-1-2-0,Attributes=7],[Sid=S-1-5-64-32,Attributes=7]]
  427. 1748:0740 00:20:46.981 TraceTokenInformation: class=3(Privileges) length=280 [PrivilegeCount=23,[Luid=SeIncreaseQuotaPrivilege,Attributes=0],[Luid=SeSecurityPrivilege,Attributes=0],[Luid=SeTakeOwnershipPrivilege,Attributes=0],[Luid=SeLoadDriverPrivilege,Attributes=0],[Luid=SeSystemProfilePrivilege,Attributes=0],[Luid=SeSystemtimePrivilege,Attributes=0],[Luid=SeProfileSingleProcessPrivilege,Attributes=0],[Luid=SeIncreaseBasePriorityPrivilege,Attributes=0],[Luid=SeCreatePagefilePrivilege,Attributes=0],[Luid=SeBackupPrivilege,Attributes=0],[Luid=SeRestorePrivilege,Attributes=0],[Luid=SeShutdownPrivilege,Attributes=0],[Luid=SeDebugPrivilege,Attributes=0],[Luid=SeSystemEnvironmentPrivilege,Attributes=0],[Luid=SeChangeNotifyPrivilege,Attributes=3],[Luid=SeRemoteShutdownPrivilege,Attributes=0],[Luid=SeUndockPrivilege,Attributes=0],[Luid=SeManageVolumePrivilege,Attributes=0],[Luid=SeImpersonatePrivilege,Attributes=3],[Luid=SeCreateGlobalPrivilege,Attributes=3],[Luid=SeIncreaseWorkingSetPrivilege,Attributes=0],[Luid=SeTimeZonePrivilege,Attributes=0],[Luid=SeCreateSymbolicLinkPrivilege,Attributes=0]]
  428. 1748:0740 00:20:46.981 TraceTokenInformation: class=4(Owner) length=20 [Owner=S-1-5-32-544]
  429. 1748:0740 00:20:46.981 TraceTokenInformation: class=5(PrimaryGroup) length=32 [PrimaryGroup=S-1-5-21-4063754582-3048442541-3029454900-1002]
  430. 1748:0740 00:20:46.981 TraceTokenInformation: class=11(RestrictedSids) length=4 [GroupCount=0]
  431. 1748:0740 00:20:46.981 TraceTokenInformation: class=12(SessionId) length=4 [1(00000001)]
  432. 1748:0740 00:20:46.981 TraceTokenInformation: class=14(SessionReference) length=1 GetInfo fail error=87
  433. 1748:0740 00:20:46.981 TraceTokenInformation: class=15(SandBoxInert) length=4 [0(00000000)]
  434. 1748:0740 00:20:46.981 TraceTokenInformation: class=16(AuditPolicy) length=1 GetInfo fail error=1314
  435. 1748:0740 00:20:46.981         adjust_privilege(SeRestorePrivilege)
  436. 1748:0740 00:20:46.981         adjust_privilege(SeBackupPrivilege)
  437. 1748:0740 00:20:46.981 adjusting privileges  - OK
  438. 1748:0740 00:20:46.981 Processing section main...
  439. 1748:0740 00:20:46.981 The 'Kaspersky PURE 3.0 / CRYSTAL' has been detected
  440. 1748:0740 00:20:46.981 setup_env: 'name' 'Kaspersky PURE 3.0 / CRYSTAL'
  441. 1748:0740 00:20:46.981 setup_env: action handler not found
  442. 1748:0740 00:20:46.981 setup_env: 'fullname' 'Kaspersky PURE 3.0 / CRYSTAL'
  443. 1748:0740 00:20:46.981 setup_env: action handler not found
  444. 1748:0740 00:20:46.981 setup_env: 'detect-msi' '{D0702EE9-9DE4-419A-9C6C-4730B1C985BA}'
  445. 1748:0740 00:20:46.981 setup_env: action handler not found
  446. 1748:0740 00:20:46.981 setup_env: 'type' 'uninstall'
  447. 1748:0740 00:20:46.981 setup_env: action handler not found
  448. 1748:0740 00:20:46.981 setup_env: 'os' 'winnt'
  449. 1748:0740 00:20:46.981 setup_env: action handler not found
  450. 1748:0740 00:20:46.981 setup_env: 'x64' 'by_os'
  451. 1748:0740 00:20:46.981 setup_env: action handler not found
  452. 1748:0740 00:20:46.981 environment string list
  453. 1748:0740 00:20:46.981 environment: 'ALLUSERSPROFILE=C:\ProgramData'
  454. 1748:0740 00:20:46.981 environment: 'APPDATA=C:\Users\user\AppData\Roaming'
  455. 1748:0740 00:20:46.981 environment: 'CommonProgramFiles=C:\Program Files (x86)\Common Files'
  456. 1748:0740 00:20:46.981 environment: 'CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files'
  457. 1748:0740 00:20:46.981 environment: 'CommonProgramW6432=C:\Program Files\Common Files'
  458. 1748:0740 00:20:46.981 environment: 'COMPUTERNAME=TAPEZONE'
  459. 1748:0740 00:20:46.981 environment: 'ComSpec=C:\WINDOWS\system32\cmd.exe'
  460. 1748:0740 00:20:46.981 environment: 'configsetroot=C:\WINDOWS\ConfigSetRoot'
  461. 1748:0740 00:20:46.981 environment: 'FP_NO_HOST_CHECK=NO'
  462. 1748:0740 00:20:46.981 environment: 'HOMEDRIVE=C:'
  463. 1748:0740 00:20:46.981 environment: 'HOMEPATH=\Users\user'
  464. 1748:0740 00:20:46.981 environment: 'LOCALAPPDATA=C:\Users\user\AppData\Local'
  465. 1748:0740 00:20:46.981 environment: 'LOGONSERVER=\\MicrosoftAccount'
  466. 1748:0740 00:20:46.981 environment: 'NUMBER_OF_PROCESSORS=8'
  467. 1748:0740 00:20:46.981 environment: 'OS=Windows_NT'
  468. 1748:0740 00:20:46.981 environment: 'Path=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\MacType'
  469. 1748:0740 00:20:46.981 environment: 'PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC'
  470. 1748:0740 00:20:46.981 environment: 'PROCESSOR_ARCHITECTURE=x86'
  471. 1748:0740 00:20:46.981 environment: 'PROCESSOR_ARCHITEW6432=AMD64'
  472. 1748:0740 00:20:46.981 environment: 'PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 60 Stepping 3, GenuineIntel'
  473. 1748:0740 00:20:46.981 environment: 'PROCESSOR_LEVEL=6'
  474. 1748:0740 00:20:46.981 environment: 'PROCESSOR_REVISION=3c03'
  475. 1748:0740 00:20:46.981 environment: 'ProgramData=C:\ProgramData'
  476. 1748:0740 00:20:46.981 environment: 'ProgramFiles=C:\Program Files (x86)'
  477. 1748:0740 00:20:46.981 environment: 'ProgramFiles(x86)=C:\Program Files (x86)'
  478. 1748:0740 00:20:46.981 environment: 'ProgramW6432=C:\Program Files'
  479. 1748:0740 00:20:46.981 environment: 'PSModulePath=C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\'
  480. 1748:0740 00:20:46.981 environment: 'PUBLIC=C:\Users\Public'
  481. 1748:0740 00:20:46.981 environment: 'SAFEBOOT_OPTION=MINIMAL'
  482. 1748:0740 00:20:46.981 environment: 'SESSIONNAME=Console'
  483. 1748:0740 00:20:46.981 environment: 'SystemDrive=C:'
  484. 1748:0740 00:20:46.981 environment: 'SystemRoot=C:\WINDOWS'
  485. 1748:0740 00:20:46.981 environment: 'TEMP=C:\Users\user~1\AppData\Local\Temp'
  486. 1748:0740 00:20:46.981 environment: 'TMP=C:\Users\user~1\AppData\Local\Temp'
  487. 1748:0740 00:20:46.981 environment: 'USERDOMAIN=TAPEZONE'
  488. 1748:0740 00:20:46.981 environment: 'USERDOMAIN_ROAMINGPROFILE=TAPEZONE'
  489. 1748:0740 00:20:46.981 environment: 'USERNAME=user'
  490. 1748:0740 00:20:46.981 environment: 'USERPROFILE=C:\Users\user'
  491. 1748:0740 00:20:46.981 environment: 'windir=C:\WINDOWS'
  492. 1748:0740 00:20:46.981 context: RemoveKLSelfDefense=1, x64=1, ProductIdX64=1, selfDefenseAction=0, extensionLevel=0
  493. 1748:0740 00:20:46.981 Processing section environment...
  494. 1748:0740 00:20:46.981 setup_env: 'env-string' 'Kaspersky PURE 3.0->DefaultProductName'
  495. 1748:0740 00:20:46.981 apply_local_context_command: 'local.x64' 'default'
  496. 1748:0740 00:20:46.981 setup_env: 'env-registry-utf' 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE2070D4ED9A914C9C674031B9C58AB\InstallProperties\InstallLocation->InstallerUserDataInstallLocation'
  497. 1748:0740 00:20:46.981 setup_env: 'env-registry-utf' 'HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\9EE2070D4ED9A914C9C674031B9C58AB\ProductName->InstallerProductName'
  498. 1748:0740 00:20:46.981 apply_local_context_command: 'local.x64' 'false'
  499. 1748:0740 00:20:46.981 setup_env: 'env-string-expand-utf' '%ProgramFiles%\Kaspersky Lab\Kaspersky PURE 3.0->DefaultProductRoot'
  500. 1748:0740 00:20:46.981 setup_env: 'env-string-expand-utf' '%ProgramFiles%\Kaspersky Lab\Kaspersky CRYSTAL 3.0->Alt1DefaultProductRoot'
  501. 1748:0740 00:20:46.981 setup_env: 'env-registry' 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common AppData->CommonAppDataDir'
  502. 1748:0740 00:20:46.981 setup_env: 'env-registry' 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Common AppData->AppDataFolder'
  503. 1748:0740 00:20:46.981 setup_env: 'env-registry-utf' 'HKEY_LOCAL_MACHINE\SOFTWARE\KasperskyLab\protected\PURE13\environment\ProductRoot->ProductRootDir'
  504. 1748:0740 00:20:46.981 setup_env: 'env-registry-utf' 'HKEY_LOCAL_MACHINE\SOFTWARE\KasperskyLab\protected\PURE13\environment\DataRoot->DataRootDir'
  505. 1748:0740 00:20:46.981 setup_env: 'env-registry-utf' 'HKEY_LOCAL_MACHINE\SOFTWARE\KasperskyLab\protected\PURE13\environment\ProductName->ProductName'
  506. 1748:0740 00:20:46.981 setup_env: 'env-string-expand-utf' '%CommonProgramFiles%->Kleaner_CommonProgramFiles'
  507. 1748:0740 00:20:46.981 setup_env: 'env-registry' 'HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\OUTLOOK.EXE\Path->OutlookPath'
  508. 1748:0740 00:20:46.981 RegOpenKeyEx(80000002H\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\OUTLOOK.EXE) failed. Error 2: 系统找不到指定的文件。.
  509. 1748:0740 00:20:46.981 set_env_registry: query_regkey_value_ex_t fail error=2
  510. 1748:0740 00:20:46.981 environment string list
  511. 1748:0740 00:20:46.981 environment: 'ALLUSERSPROFILE=C:\ProgramData'
  512. 1748:0740 00:20:46.981 environment: 'Alt1DefaultProductRoot=C:\Program Files (x86)\Kaspersky Lab\Kaspersky CRYSTAL 3.0'
  513. 1748:0740 00:20:46.981 environment: 'APPDATA=C:\Users\user\AppData\Roaming'
  514. 1748:0740 00:20:46.981 environment: 'AppDataFolder=C:\ProgramData'
  515. 1748:0740 00:20:46.981 environment: 'CommonAppDataDir=C:\ProgramData'
  516. 1748:0740 00:20:46.981 environment: 'CommonProgramFiles=C:\Program Files (x86)\Common Files'
  517. 1748:0740 00:20:46.981 environment: 'CommonProgramFiles(x86)=C:\Program Files (x86)\Common Files'
  518. 1748:0740 00:20:46.981 environment: 'CommonProgramW6432=C:\Program Files\Common Files'
  519. 1748:0740 00:20:46.981 environment: 'COMPUTERNAME=TAPEZONE'
  520. 1748:0740 00:20:46.981 environment: 'ComSpec=C:\WINDOWS\system32\cmd.exe'
  521. 1748:0740 00:20:46.981 environment: 'configsetroot=C:\WINDOWS\ConfigSetRoot'
  522. 1748:0740 00:20:46.981 environment: 'DataRootDir=C:\ProgramData\Kaspersky Lab\PURE13'
  523. 1748:0740 00:20:46.981 environment: 'DefaultProductName=Kaspersky PURE 3.0'
  524. 1748:0740 00:20:46.981 environment: 'DefaultProductRoot=C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0'
  525. 1748:0740 00:20:46.981 environment: 'FP_NO_HOST_CHECK=NO'
  526. 1748:0740 00:20:46.981 environment: 'HOMEDRIVE=C:'
  527. 1748:0740 00:20:46.981 environment: 'HOMEPATH=\Users\user'
  528. 1748:0740 00:20:46.981 environment: 'InstallerProductName=Kaspersky PURE 3.0'
  529. 1748:0740 00:20:46.981 environment: 'Kleaner_CommonProgramFiles=C:\Program Files (x86)\Common Files'
  530. 1748:0740 00:20:46.981 environment: 'LOCALAPPDATA=C:\Users\user\AppData\Local'
  531. 1748:0740 00:20:46.981 environment: 'LOGONSERVER=\\MicrosoftAccount'
  532. 1748:0740 00:20:46.981 environment: 'NUMBER_OF_PROCESSORS=8'
  533. 1748:0740 00:20:46.981 environment: 'OS=Windows_NT'
  534. 1748:0740 00:20:46.981 environment: 'Path=C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\3.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\MacType'
  535. 1748:0740 00:20:46.981 environment: 'PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC'
  536. 1748:0740 00:20:46.981 environment: 'PROCESSOR_ARCHITECTURE=x86'
  537. 1748:0740 00:20:46.981 environment: 'PROCESSOR_ARCHITEW6432=AMD64'
  538. 1748:0740 00:20:46.981 environment: 'PROCESSOR_IDENTIFIER=Intel64 Family 6 Model 60 Stepping 3, GenuineIntel'
  539. 1748:0740 00:20:46.981 environment: 'PROCESSOR_LEVEL=6'
  540. 1748:0740 00:20:46.981 environment: 'PROCESSOR_REVISION=3c03'
  541. 1748:0740 00:20:46.981 environment: 'ProductName=Kaspersky PURE 3.0'
  542. 1748:0740 00:20:46.981 environment: 'ProductRootDir=C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0'
  543. 1748:0740 00:20:46.981 environment: 'ProgramData=C:\ProgramData'
  544. 1748:0740 00:20:46.981 environment: 'ProgramFiles=C:\Program Files (x86)'
  545. 1748:0740 00:20:46.981 environment: 'ProgramFiles(x86)=C:\Program Files (x86)'
  546. 1748:0740 00:20:46.981 environment: 'ProgramW6432=C:\Program Files'
  547. 1748:0740 00:20:46.981 environment: 'PSModulePath=C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules\'
  548. 1748:0740 00:20:46.981 environment: 'PUBLIC=C:\Users\Public'
  549. 1748:0740 00:20:46.981 environment: 'SAFEBOOT_OPTION=MINIMAL'
  550. 1748:0740 00:20:46.981 environment: 'SESSIONNAME=Console'
  551. 1748:0740 00:20:46.981 environment: 'SystemDrive=C:'
  552. 1748:0740 00:20:46.981 environment: 'SystemRoot=C:\WINDOWS'
  553. 1748:0740 00:20:46.981 environment: 'TEMP=C:\Users\user~1\AppData\Local\Temp'
  554. 1748:0740 00:20:46.981 environment: 'TMP=C:\Users\user~1\AppData\Local\Temp'
  555. 1748:0740 00:20:46.981 environment: 'USERDOMAIN=TAPEZONE'
  556. 1748:0740 00:20:46.981 environment: 'USERDOMAIN_ROAMINGPROFILE=TAPEZONE'
  557. 1748:0740 00:20:46.981 environment: 'USERNAME=user'
  558. 1748:0740 00:20:46.981 environment: 'USERPROFILE=C:\Users\user'
  559. 1748:0740 00:20:46.996 environment: 'windir=C:\WINDOWS'
  560. 1748:0740 00:20:46.996 Processing section remove...
  561. 1748:0740 00:20:46.996 remove_self_defence as_installer
  562. 1748:0740 00:20:46.996 remove_self_protection_as_installer
  563. 1748:0740 00:20:47.043 returns 0
  564. 1748:0740 00:20:47.043 remove_self_defence by_fssync
  565. 1748:0740 00:20:47.043 Loading key data...
  566. 1748:0740 00:20:47.043 key data (706 bytes) successfully loaded
  567. 1748:0740 00:20:47.043 removing self-protection using new scheme...
  568. 1748:0740 00:20:47.043 can't be done, err 0x80070002
  569. 1748:0740 00:20:47.043 removing self-protection using old scheme...
  570. 1748:0740 00:20:47.090 can't be done, err 0x80004005
  571. 1748:0740 00:20:47.090 removing self-protection failed
  572. 1748:0740 00:20:47.090 Processing section assassinate...
  573. 1748:0740 00:20:47.090 stopping service "avp"...
  574. 1748:0740 00:20:47.090 Loading key data...
  575. 1748:0740 00:20:47.090 key data (706 bytes) successfully loaded
  576. 1748:0740 00:20:47.090 removing self-protection using new scheme...
  577. 1748:0740 00:20:47.090 can't be done, err 0x80070002
  578. 1748:0740 00:20:47.090 removing self-protection using old scheme...
  579. 1748:0740 00:20:47.090 can't be done, err 0x80004005
  580. 1748:0740 00:20:47.090 removing self-protection failed
  581. 1748:0740 00:20:47.090 stopping service "avp"...
  582. 1748:0740 00:20:47.090 Loading key data...
  583. 1748:0740 00:20:47.090 key data (706 bytes) successfully loaded
  584. 1748:0740 00:20:47.090 removing self-protection using new scheme...
  585. 1748:0740 00:20:47.090 can't be done, err 0x80070002
  586. 1748:0740 00:20:47.090 removing self-protection using old scheme...
  587. 1748:0740 00:20:47.106 can't be done, err 0x80004005
  588. 1748:0740 00:20:47.106 removing self-protection failed
  589. 1748:0740 00:20:47.106 Processing section assassinate...
  590. 1748:0740 00:20:47.106 stopping service "avp"...
  591. 1748:0740 00:20:47.106 Loading key data...
  592. 1748:0740 00:20:47.106 key data (706 bytes) successfully loaded
  593. 1748:0740 00:20:47.106 removing self-protection using new scheme...
  594. 1748:0740 00:20:47.106 can't be done, err 0x80070002
  595. 1748:0740 00:20:47.106 removing self-protection using old scheme...
  596. 1748:0740 00:20:47.106 can't be done, err 0x80004005
  597. 1748:0740 00:20:47.106 removing self-protection failed
  598. 1748:0740 00:20:47.106 stopping service "avp"...
  599. 1748:0740 00:20:47.106 Loading key data...
  600. 1748:0740 00:20:47.106 key data (706 bytes) successfully loaded
  601. 1748:0740 00:20:47.106 removing self-protection using new scheme...
  602. 1748:0740 00:20:47.106 can't be done, err 0x80070002
  603. 1748:0740 00:20:47.106 removing self-protection using old scheme...
  604. 1748:0740 00:20:47.121 can't be done, err 0x80004005
  605. 1748:0740 00:20:47.121 removing self-protection failed
  606. 1748:0740 00:20:47.121 stopping process "avp" with method 0...
  607. 1748:0740 00:20:47.121         adjust_privilege(SeDebugPrivilege)
  608. 1748:0740 00:20:47.121 Process with name 'avp' not found
  609. 1748:0740 00:20:47.121 Processing section wait...
  610. 1748:0740 00:20:47.121 waiting process-close "avp.exe" 120 seconds...
  611. 1748:0740 00:20:47.121 Process not found
  612. 1748:0740 00:20:52.137 waiting process-close "avp.exe" 120 seconds...
  613. 1748:0740 00:20:52.137 Process not found
  614. 1748:0740 00:20:52.137 Processing section assassinate...
  615. 1748:0740 00:20:52.137 stopping process "avp" with method 0...
  616. 1748:0740 00:20:52.137         adjust_privilege(SeDebugPrivilege)
  617. 1748:0740 00:20:52.137 Process with name 'avp' not found
  618. 1748:0740 00:20:52.137 Processing section wait...
  619. 1748:0740 00:20:52.137 waiting process-close "avp.exe" 120 seconds...
  620. 1748:0740 00:20:52.137 Process not found
  621. 1748:0740 00:20:57.153 waiting process-close "avp.exe" 120 seconds...
  622. 1748:0740 00:20:57.153 Process not found
  623. 1748:0740 00:20:57.153 Processing section assassinate...
  624. 1748:0740 00:20:57.153 stopping process "avp" with method 0...
  625. 1748:0740 00:20:57.153         adjust_privilege(SeDebugPrivilege)
  626. 1748:0740 00:20:57.153 Process with name 'avp' not found
  627. 1748:0740 00:20:57.153 Processing section wait...
  628. 1748:0740 00:20:57.153 waiting process-close "avp.exe" 120 seconds...
  629. 1748:0740 00:20:57.153 Process not found
  630. 1748:0740 00:21:02.168 waiting process-close "avp.exe" 120 seconds...
  631. 1748:0740 00:21:02.168 Process not found
  632. 1748:0740 00:21:02.168 Processing section registry...
  633. 1748:0740 00:21:02.168 apply_local_context_command: 'local.x64' 'false'
  634. 1748:0740 00:21:02.168 apply_registry: 'local.x64' 'false'
  635. 1748:0740 00:21:02.168 apply_registry: action handler not found
  636. 1748:0740 00:21:02.168 apply_registry: 'key' 'HKEY_LOCAL_MACHINE\SOFTWARE\KasperskyLab\protected\PURE13\settings'
  637. 1748:0740 00:21:02.168 apply_registry: 'value' 'AllowServiceStop'
  638. 1748:0740 00:21:02.168 apply_registry: 'set-value-dword' '1'
  639. 1748:0740 00:21:02.168 registry_set_value_dword x64=0 '1'
  640. 1748:0740 00:21:02.168 registry_set_value_dword success
  641. 1748:0740 00:21:02.168 Processing section script...
  642. 1748:0740 00:21:02.168 start script::process
  643. 1748:0740 00:21:02.168 OriginalDLL: try restore {B54F3741-5B07-11cf-A4B0-00AA004A55E8}
  644. 1748:0740 00:21:02.168 OriginalDLL: value missing, err 2
  645. 1748:0740 00:21:02.168 OriginalDLL: try restore {B54F3742-5B07-11cf-A4B0-00AA004A55E8}
  646. 1748:0740 00:21:02.168 OriginalDLL: value missing, err 2
  647. 1748:0740 00:21:02.168 OriginalDLL: try restore {B54F3743-5B07-11cf-A4B0-00AA004A55E8}
  648. 1748:0740 00:21:02.168 OriginalDLL: value missing, err 2
  649. 1748:0740 00:21:02.168 RegSvr32VbscriptDll
  650. 1748:0740 00:21:02.200 RegSvr32VbscriptDll CreateProcess ret=1 code=0
  651. 1748:0740 00:21:02.200 RegSvr32VbscriptDll WaitProcess h=0x000002BC pid=1996
  652. 1748:0740 00:21:02.325 RegSvr32VbscriptDll WaitProcess ret=0
  653. 1748:0740 00:21:02.325 extracting resource to 'C:\Users\user~1\AppData\Local\Temp\actF45E.tmp'...
  654. 1748:0740 00:21:02.637 Resource (396800 bytes) successfully dumped
  655. 1748:0740 00:21:02.637 cmdline: '"C:\Users\user~1\AppData\Local\Temp\actF45E.tmp" remove vbs "param"'
  656. 1748:0740 00:21:02.637 running utility...
  657. 1748:0740 00:21:02.934 utility finished with exit code: 2
  658. 1748:0740 00:21:02.934 ------Utility Stdout v ---
  659. 2004:07d8 00:21:02.872 64-bit utility started, params: 'remove vbs param'
  660. 2004:07d8 00:21:02.872 Command detected: restore original DLLs for VBS
  661. 2004:07d8 00:21:02.872 OriginalDLL: try restore {B54F3741-5B07-11cf-A4B0-00AA004A55E8}
  662. 2004:07d8 00:21:02.872 OriginalDLL: value missing, err 2
  663. 2004:07d8 00:21:02.872 OriginalDLL: try restore {B54F3742-5B07-11cf-A4B0-00AA004A55E8}
  664. 2004:07d8 00:21:02.872 OriginalDLL: value missing, err 2
  665. 2004:07d8 00:21:02.872 OriginalDLL: try restore {B54F3743-5B07-11cf-A4B0-00AA004A55E8}
  666. 2004:07d8 00:21:02.872 OriginalDLL: value missing, err 2
  667. 2004:07d8 00:21:02.872 RegSvr32VbscriptDll
  668. 2004:07d8 00:21:02.903 RegSvr32VbscriptDll CreateProcess ret=1 code=0
  669. 2004:07d8 00:21:02.903 RegSvr32VbscriptDll WaitProcess h=0x000000D8 pid=2028
  670. 2004:07d8 00:21:02.934 RegSvr32VbscriptDll WaitProcess ret=0
  671. 2004:07d8 00:21:02.934 64-bit utility finished, return code = 2
  672. 1748:0740 00:21:02.934 ------Utility Stdout ^ ---
  673. 1748:0740 00:21:02.934 Utility Stderr is empty
  674. 1748:0740 00:21:02.934 Module.Init(cleanapi.dll=00000000)
  675. 1748:0740 00:21:02.934 creating kleaner host object...
  676. 1748:0740 00:21:02.981 creating ActiveScriptSite...
  677. 1748:0740 00:21:03.106 parsing script...
  678. 1748:0740 00:21:03.106 execute script...
  679. 1748:0740 00:21:03.184 Check InstallLocation
  680. 1748:0740 00:21:03.184 Try use ProductRootDir='C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0'
  681. 1748:0740 00:21:03.184 InstallLocation: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0
  682. 1748:0740 00:21:03.247 AVPRunner: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
  683. 1748:0740 00:21:03.247 script execution finished
  684. 1748:0740 00:21:03.247 end script::process
  685. 1748:0740 00:21:03.247 Processing section execute...
  686. 1748:0740 00:21:03.247 apply_local_context_command: 'local.x64' 'false'
  687. 1748:0740 00:21:03.247 undefined run command
  688. 1748:0740 00:21:03.247 executing command line: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe -e
  689. 1748:0740 00:21:03.434 executed successfully, return code 0
  690. 1748:0740 00:21:03.434 Processing section wait...
  691. 1748:0740 00:21:03.434 waiting process-close "runner_avp.exe" 120 seconds...
  692. 1748:0740 00:21:03.434 Process not found
  693. 1748:0740 00:21:08.450 waiting process-close "runner_avp.exe" 120 seconds...
  694. 1748:0740 00:21:08.450 Process not found
  695. 1748:0740 00:21:08.450 Processing section assassinate...
  696. 1748:0740 00:21:08.450 stopping service "avp"...
  697. 1748:0740 00:21:08.450 Loading key data...
  698. 1748:0740 00:21:08.450 key data (706 bytes) successfully loaded
  699. 1748:0740 00:21:08.450 removing self-protection using new scheme...
  700. 1748:0740 00:21:08.481 can't be done, err 0x80070002
  701. 1748:0740 00:21:08.481 removing self-protection using old scheme...
  702. 1748:0740 00:21:08.481 can't be done, err 0x80004005
  703. 1748:0740 00:21:08.481 removing self-protection failed
  704. 1748:0740 00:21:08.481 stopping service "avp"...
  705. 1748:0740 00:21:08.481 Loading key data...
  706. 1748:0740 00:21:08.481 key data (706 bytes) successfully loaded
  707. 1748:0740 00:21:08.481 removing self-protection using new scheme...
  708. 1748:0740 00:21:08.481 can't be done, err 0x80070002
  709. 1748:0740 00:21:08.481 removing self-protection using old scheme...
  710. 1748:0740 00:21:08.481 can't be done, err 0x80004005
  711. 1748:0740 00:21:08.497 removing self-protection failed
  712. 1748:0740 00:21:08.497 stopping process "avp" with method 0...
  713. 1748:0740 00:21:08.497         adjust_privilege(SeDebugPrivilege)
  714. 1748:0740 00:21:08.497 Process with name 'avp' not found
  715. 1748:0740 00:21:08.497 Processing section wait...
  716. 1748:0740 00:21:08.497 waiting process-close "avp.exe" 120 seconds...
  717. 1748:0740 00:21:08.497 Process not found
  718. 1748:0740 00:21:13.512 waiting process-close "avp.exe" 120 seconds...
  719. 1748:0740 00:21:13.512 Process not found
  720. 1748:0740 00:21:13.512 Processing section assassinate...
  721. 1748:0740 00:21:13.512 stopping process "avp" with method 0...
  722. 1748:0740 00:21:13.512         adjust_privilege(SeDebugPrivilege)
  723. 1748:0740 00:21:13.512 Process with name 'avp' not found
  724. 1748:0740 00:21:13.512 Processing section wait...
  725. 1748:0740 00:21:13.512 waiting process-close "avp.exe" 120 seconds...
  726. 1748:0740 00:21:13.512 Process not found
  727. 1748:0740 00:21:18.528 waiting process-close "avp.exe" 120 seconds...
  728. 1748:0740 00:21:18.528 Process not found
  729. 1748:0740 00:21:18.528 Processing section assassinate...
  730. 1748:0740 00:21:18.528 stopping process "avp" with method 0...
  731. 1748:0740 00:21:18.528         adjust_privilege(SeDebugPrivilege)
  732. 1748:0740 00:21:18.528 Process with name 'avp' not found
  733. 1748:0740 00:21:18.528 Processing section wait...
  734. 1748:0740 00:21:18.528 waiting process-close "avp.exe" 120 seconds...
  735. 1748:0740 00:21:18.528 Process not found
  736. 1748:0740 00:21:23.544 waiting process-close "avp.exe" 120 seconds...
  737. 1748:0740 00:21:23.544 Process not found
  738. 1748:0740 00:21:23.544 Processing section script...
  739. 1748:0740 00:21:23.544 start script::process
  740. 1748:0740 00:21:23.544 OriginalDLL: try restore {B54F3741-5B07-11cf-A4B0-00AA004A55E8}
  741. 1748:0740 00:21:23.544 OriginalDLL: value missing, err 2
  742. 1748:0740 00:21:23.544 OriginalDLL: try restore {B54F3742-5B07-11cf-A4B0-00AA004A55E8}
  743. 1748:0740 00:21:23.544 OriginalDLL: value missing, err 2
  744. 1748:0740 00:21:23.544 OriginalDLL: try restore {B54F3743-5B07-11cf-A4B0-00AA004A55E8}
  745. 1748:0740 00:21:23.544 OriginalDLL: value missing, err 2
  746. 1748:0740 00:21:23.544 RegSvr32VbscriptDll
  747. 1748:0740 00:21:23.544 RegSvr32VbscriptDll CreateProcess ret=1 code=0
  748. 1748:0740 00:21:23.544 RegSvr32VbscriptDll WaitProcess h=0x00000418 pid=1004
  749. 1748:0740 00:21:23.544 RegSvr32VbscriptDll WaitProcess ret=0
  750. 1748:0740 00:21:23.544 cmdline: '"C:\Users\u~1\AppData\Local\Temp\actF45E.tmp" remove vbs "param"'
  751. 1748:0740 00:21:23.544 running utility...
  752. 1748:0740 00:21:23.559 utility finished with exit code: 2
  753. 1748:0740 00:21:23.559 ------Utility Stdout v ---
  754. 384:0184 00:21:23.559 64-bit utility started, params: 'remove vbs param'
  755. 384:0184 00:21:23.559 Command detected: restore original DLLs for VBS
  756. 384:0184 00:21:23.559 OriginalDLL: try restore {B54F3741-5B07-11cf-A4B0-00AA004A55E8}
  757. 384:0184 00:21:23.559 OriginalDLL: value missing, err 2
  758. 384:0184 00:21:23.559 OriginalDLL: try restore {B54F3742-5B07-11cf-A4B0-00AA004A55E8}
  759. 384:0184 00:21:23.559 OriginalDLL: value missing, err 2
  760. 384:0184 00:21:23.559 OriginalDLL: try restore {B54F3743-5B07-11cf-A4B0-00AA004A55E8}
  761. 384:0184 00:21:23.559 OriginalDLL: value missing, err 2
  762. 384:0184 00:21:23.559 RegSvr32VbscriptDll
  763. 384:0184 00:21:23.559 RegSvr32VbscriptDll CreateProcess ret=1 code=0
  764. 384:0184 00:21:23.559 RegSvr32VbscriptDll WaitProcess h=0x000000C4 pid=836
  765. 384:0184 00:21:23.559 RegSvr32VbscriptDll WaitProcess ret=0
  766. 384:0184 00:21:23.559 64-bit utility finished, return code = 2
  767. 1748:0740 00:21:23.559 ------Utility Stdout ^ ---
  768. 1748:0740 00:21:23.559 Utility Stderr is empty
  769. 1748:0740 00:21:23.559 creating kleaner host object...
  770. 1748:0740 00:21:23.559 creating ActiveScriptSite...
  771. 1748:0740 00:21:23.575 parsing script...
  772. 1748:0740 00:21:23.575 execute script...
  773. 1748:0740 00:21:23.997 ->Script Begin
  774. 1748:0740 00:21:23.997 (+) SEARCHING NECESSARY DIRECTORIES
  775. 1748:0740 00:21:24.012 RootFolder: C:\Program Files (x86)\Kaspersky Lab
  776. 1748:0740 00:21:24.012 Bases: C:\ProgramData\Kaspersky Lab\PURE13
  777. 1748:0740 00:21:24.012 BasesRoot: C:\ProgramData\Kaspersky Lab
  778. 1748:0740 00:21:24.012 MainExePath: C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\avp.exe
  779. 1748:0740 00:21:24.012 ProductName: Kaspersky PURE 3.0
  780. 1748:0740 00:21:24.012 CommonProgs: C:\ProgramData\Microsoft\Windows\Start Menu\Programs
  781. 1748:0740 00:21:24.012 ProgramsFolder: C:\Users\u\AppData\Roaming\Microsoft\Windows\Start Menu\Programs
  782. 1748:0740 00:21:24.247 FirefoxLocation: F:\Sequence 1\firefox
  783. 1748:0740 00:21:24.247 FirefoxPlugin: F:\Sequence 1\firefox\extensions\linkfilter@kaspersky.ru
  784. 1748:0740 00:21:24.247 Password Manager Location: C:\Users\u\AppData\Roaming\Kaspersky Lab
  785. 1748:0740 00:21:24.247 Crypto Storage location: C:\Program Files\Common Files\InfoWatch\CryptoStorage
  786. 1748:0740 00:21:24.247 Crypto Storage Root location: C:\Program Files\Common Files\InfoWatch
  787. 1748:0740 00:21:24.247 (+) SEARCH KLIM
  788. 1748:0740 00:21:24.247 Klim6 found
  789. 1748:0740 00:21:24.247 +++++ KAVREMOVER IN PROCESS +++++
  790. 1748:0740 00:21:24.247 ->> Try to write to AllowServiceStop
  791. 1748:0740 00:21:24.262 NOW!!! SOFTWARE\KasperskyLab\protected\PURE13\settings contain: 1
  792. 1748:0740 00:21:24.262 ->> Try to create environment variable with path to avp.exe
  793. 1748:0740 00:21:24.262 ->> Create environment variable exec_avp=
  794. 1748:0740 00:21:24.262 ->> Execute ../avp.exe -e
  795. 1748:0740 00:21:24.262 Processing section execute_avp...
  796. 1748:0740 00:21:24.262 Calling 64-bit util for 'run' '%exec_avp% -e' action...
  797. 1748:0740 00:21:24.262 cmdline: '"C:\Users\u~1\AppData\Local\Temp\actF45E.tmp" run run-cmd "%exec_avp% -e"'
  798. 1748:0740 00:21:24.262 running utility...
  799. 1748:0740 00:21:24.262 utility finished with exit code: 2
  800. 1748:0740 00:21:24.262 ------Utility Stdout v ---
  801. 400:05ac 00:21:24.262 64-bit utility started, params: 'run run-cmd %exec_avp% -e'
  802. 400:05ac 00:21:24.262 Command detected: run-cmd '%exec_avp% -e'
  803. 400:05ac 00:21:24.262 executing command line: %exec_avp% -e
  804. 400:05ac 00:21:24.262 failed to execute, error = 2
  805. 400:05ac 00:21:24.262 64-bit utility finished, return code = 2
  806. 1748:0740 00:21:24.262 ------Utility Stdout ^ ---
  807. 1748:0740 00:21:24.262 Utility Stderr is empty
  808. 1748:0740 00:21:24.262 Command was not executed
  809. 1748:0740 00:21:24.262 Processing section runner_avp_wait...
  810. 1748:0740 00:21:24.262 waiting process-close "runner_avp.exe" 120 seconds...
  811. 1748:0740 00:21:24.262 Process not found
  812. 1748:0740 00:21:29.278 waiting process-close "runner_avp.exe" 120 seconds...
  813. 1748:0740 00:21:29.278 Process not found
  814. 1748:0740 00:21:29.278 ->> Stopping processes and service avp
  815. 1748:0740 00:21:29.278 Processing section assassinate_termavp...
  816. 1748:0740 00:21:29.278 stopping service "avp"...
  817. 1748:0740 00:21:29.278 Loading key data...
  818. 1748:0740 00:21:29.278 key data (706 bytes) successfully loaded
  819. 1748:0740 00:21:29.278 removing self-protection using new scheme...
  820. 1748:0740 00:21:29.278 can't be done, err 0x80070002
  821. 1748:0740 00:21:29.278 removing self-protection using old scheme...
  822. 1748:0740 00:21:29.278 can't be done, err 0x80004005
  823. 1748:0740 00:21:29.278 removing self-protection failed
  824. 1748:0740 00:21:29.278 stopping service "avp"...
  825. 1748:0740 00:21:29.278 Loading key data...
  826. 1748:0740 00:21:29.278 key data (706 bytes) successfully loaded
  827. 1748:0740 00:21:29.278 removing self-protection using new scheme...
  828. 1748:0740 00:21:29.294 can't be done, err 0x80070002
  829. 1748:0740 00:21:29.294 removing self-protection using old scheme...
  830. 1748:0740 00:21:29.294 can't be done, err 0x80004005
  831. 1748:0740 00:21:29.294 removing self-protection failed
  832. 1748:0740 00:21:29.294 stopping process "runner_avp" with method 0...
  833. 1748:0740 00:21:29.294         adjust_privilege(SeDebugPrivilege)
  834. 1748:0740 00:21:29.294 Process with name 'runner_avp' not found
  835. 1748:0740 00:21:29.294 stopping process "avp" with method 0...
  836. 1748:0740 00:21:29.294         adjust_privilege(SeDebugPrivilege)
  837. 1748:0740 00:21:29.294 Process with name 'avp' not found
  838. 1748:0740 00:21:29.294 Processing section assassinate_termavp_wait...
  839. 1748:0740 00:21:29.294 waiting process-close "runner_avp.exe" 120 seconds...
  840. 1748:0740 00:21:29.294 Process not found
  841. 1748:0740 00:21:29.294 waiting process-close "avp.exe" 120 seconds...
  842. 1748:0740 00:21:29.294 Process not found
  843. 1748:0740 00:21:34.309 waiting process-close "runner_avp.exe" 120 seconds...
  844. 1748:0740 00:21:34.309 Process not found
  845. 1748:0740 00:21:34.309 waiting process-close "avp.exe" 120 seconds...
  846. 1748:0740 00:21:34.309 Process not found
  847. 1748:0740 00:21:34.309 Processing section preuninstall_clean_users...
  848. 1748:0740 00:21:34.309 [reg_users] begin
  849. 1748:0740 00:21:34.309 Adding hive: .DEFAULT
  850. 1748:0740 00:21:34.309 Adding hive: S-1-5-19
  851. 1748:0740 00:21:34.309 Adding hive: S-1-5-20
  852. 1748:0740 00:21:34.309 Adding hive: S-1-5-21-4063754582-3048442541-3029454900-1002
  853. 1748:0740 00:21:34.309 Adding hive: S-1-5-18
  854. 1748:0740 00:21:34.403 RegLoadKey(C:\Users\All Users\ntuser.dat): ok
  855. 1748:0740 00:21:34.481 RegLoadKey(C:\Users\Default\ntuser.dat): ok
  856. 1748:0740 00:21:34.481 RegLoadKey(C:\Users\Default User\ntuser.dat): error 32
  857. 1748:0740 00:21:34.575 RegLoadKey(C:\Users\Default.migrated\ntuser.dat): ok
  858. 1748:0740 00:21:34.622 RegLoadKey(C:\Users\Public\ntuser.dat): ok
  859. 1748:0740 00:21:34.622 RegLoadKey(C:\Users\u\ntuser.dat): error 32
  860. 1748:0740 00:21:34.716 RegLoadKey(C:\Users\UpdatusUser\ntuser.dat): ok
  861. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\.DEFAULT\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  862. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\.DEFAULT\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  863. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  864. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\S-1-5-19\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  865. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\S-1-5-19\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  866. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  867. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\S-1-5-20\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  868. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\S-1-5-20\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  869. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  870. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\S-1-5-21-4063754582-3048442541-3029454900-1002\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  871. 1748:0740 00:21:34.716 value size=84 type=1
  872. 1748:0740 00:21:34.716 value 'C:\Users\u\Desktop\Safe Money.lnk'
  873. 1748:0740 00:21:34.716 delete filename 'C:\Users\u\Desktop\Safe Money.lnk'
  874. 1748:0740 00:21:34.716 warning: file 'C:\Users\u\Desktop\Safe Money.lnk' not exist
  875. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\S-1-5-18\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  876. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\S-1-5-18\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  877. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  878. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\kleaner_0\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  879. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\kleaner_0\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  880. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  881. 1748:0740 00:21:34.716 remove_file_registry_link x64=1 'HKEY_USERS\kleaner_1\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  882. 1748:0740 00:21:34.716 RegOpenKeyEx(80000003H\kleaner_1\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  883. 1748:0740 00:21:34.716 query_regkey_value_ex_w fail winerr=2
  884. 1748:0740 00:21:34.731 remove_file_registry_link x64=1 'HKEY_USERS\kleaner_2\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  885. 1748:0740 00:21:34.731 RegOpenKeyEx(80000003H\kleaner_2\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  886. 1748:0740 00:21:34.731 query_regkey_value_ex_w fail winerr=2
  887. 1748:0740 00:21:34.731 remove_file_registry_link x64=1 'HKEY_USERS\kleaner_3\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  888. 1748:0740 00:21:34.731 RegOpenKeyEx(80000003H\kleaner_3\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  889. 1748:0740 00:21:34.731 query_regkey_value_ex_w fail winerr=2
  890. 1748:0740 00:21:34.731 remove_file_registry_link x64=1 'HKEY_USERS\kleaner_4\Software\KasperskyLab\protected\PURE13\SafeBanking\LnkName'
  891. 1748:0740 00:21:34.731 RegOpenKeyEx(80000003H\kleaner_4\Software\KasperskyLab\protected\PURE13\SafeBanking) failed. Error 2: 系统找不到指定的文件。.
  892. 1748:0740 00:21:34.731 query_regkey_value_ex_w fail winerr=2
  893. 1748:0740 00:21:34.731 RegUnLoadKey(kleaner_0): 0
  894. 1748:0740 00:21:34.731 RegUnLoadKey(kleaner_1): 0
  895. 1748:0740 00:21:34.747 RegUnLoadKey(kleaner_2): 0
  896. 1748:0740 00:21:34.747 RegUnLoadKey(kleaner_3): 0
  897. 1748:0740 00:21:34.747 RegUnLoadKey(kleaner_4): 0
  898. 1748:0740 00:21:34.747 ->> Unregister dlls before msiexec
  899. 1748:0740 00:21:34.747 Processing section execute_before_msi...
  900. 1748:0740 00:21:34.747 Calling 64-bit util for 'run' 'regsvr32.exe /u /s "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\mcouas.dll"' action...
  901. 1748:0740 00:21:34.747 cmdline: '"C:\Users\u~1\AppData\Local\Temp\actF45E.tmp" run run-cmd "regsvr32.exe /u /s "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\mcouas.dll""'
  902. 1748:0740 00:21:34.747 running utility...
  903. 1748:0740 00:21:34.919 utility finished with exit code: 0
  904. 1748:0740 00:21:34.919 ------Utility Stdout v ---
  905. 1392:0584 00:21:34.763 64-bit utility started, params: 'run run-cmd regsvr32.exe /u /s "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\mcouas.dll"'
  906. 1392:0584 00:21:34.763 Command detected: run-cmd 'regsvr32.exe /u /s "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\mcouas.dll"'
  907. 1392:0584 00:21:34.763 executing command line: regsvr32.exe /u /s "C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\mcouas.dll"
  908. 1392:0584 00:21:34.919 executed successfully, return code 0
  909. 1392:0584 00:21:34.919 64-bit utility finished, return code = 0
  910. 1748:0740 00:21:34.919 ------Utility Stdout ^ ---
  911. 1748:0740 00:21:34.919 Utility Stderr is empty
  912. 1748:0740 00:21:34.919 Command executed
  913. 1748:0740 00:21:34.919 Calling 64-bit util for 'run' '"C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\stpass.exe" /uninstall /removesettings' action...
  914. 1748:0740 00:21:34.919 cmdline: '"C:\Users\u~1\AppData\Local\Temp\actF45E.tmp" run run-cmd ""C:\Program Files (x86)\Kaspersky Lab\Kaspersky PURE 3.0\Kaspersky Password Manager\stpass.exe" /uninstall /removesettings"'
  915. 1748:0740 00:21:34.919 running utility...
复制代码
晓de朱雀_鼬
发表于 2014-1-21 13:45:13 | 显示全部楼层
日渐颓废的我们 发表于 2014-1-21 13:43
其实我觉得很有可能是系统的问题……我用的是windows 8.1……
因为我看kavremover的错误报告

那估计就是不支持8.1了,我看卡巴官方论坛原帖里面也没提到8.1
日渐颓废的我们
 楼主| 发表于 2014-1-21 13:49:18 | 显示全部楼层
本帖最后由 日渐颓废的我们 于 2014-1-21 13:50 编辑
晓de朱雀_鼬 发表于 2014-1-21 13:32
哈?安全模式下也不行?不至于吧!安全模式都不加载驱动了,卡巴没这么牛吧

我再试试在安全模式用系统自带的卸载。。。(好吧,试过了,安全模式不能用windows installer)
另外我问的另外2个问题的答案你知道吗?
晓de朱雀_鼬
发表于 2014-1-21 13:57:45 | 显示全部楼层
日渐颓废的我们 发表于 2014-1-21 13:49
我再试试在安全模式用系统自带的卸载。。。(好吧,试过了,安全模式不能用windows installer)
另外我问 ...

类似iCheck的缓存机制,我想一般杀软都有的吧?具体ESS是怎么设置的我就不知道了……
日渐颓废的我们
 楼主| 发表于 2014-1-21 13:59:59 | 显示全部楼层
晓de朱雀_鼬 发表于 2014-1-21 13:57
类似iCheck的缓存机制,我想一般杀软都有的吧?具体ESS是怎么设置的我就不知道了……

不一定吧。貌似诺顿就没有……诺顿用的insight虽然也是加速但是原理和缓存完全不一样……
晓de朱雀_鼬
发表于 2014-1-21 14:03:12 | 显示全部楼层
日渐颓废的我们 发表于 2014-1-21 13:59
不一定吧。貌似诺顿就没有……诺顿用的insight虽然也是加速但是原理和缓存完全不一样……

好吧,我也不知道,我来帮你召唤一下:@zandalong
zandalong
发表于 2014-1-21 14:32:08 | 显示全部楼层
扫描的缓存机制,NOD32是有的。
诺顿不是很清楚,最近只玩过SEP,不过铁壳这种防御型著称的杀软,有没有扫描的缓存机制意义不大。
日渐颓废的我们
 楼主| 发表于 2014-1-21 14:34:28 | 显示全部楼层
zandalong 发表于 2014-1-21 14:32
扫描的缓存机制,NOD32是有的。
诺顿不是很清楚,最近只玩过SEP,不过铁壳这种防御型著称的杀软,有没有扫 ...

那么请问是avast那种永久缓存呢。还是mse那种临时缓存呢?
zandalong
发表于 2014-1-21 14:35:29 | 显示全部楼层
杀软报不兼容,不在于服务和监控是否开启。而在于驱动是否安装了。
NOD32不清楚是不是原生64位,这个要看进程后面有没有*32。
要看安装文件夹的话,小A也是默认装在64位文件夹里的。
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-25 22:54 , Processed in 0.087604 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表