楼主: backway
收起左侧

简介Avira AntiRootkit Tool

[复制链接]
backway
 楼主| 发表于 2009-4-12 19:28:12 | 显示全部楼层

回复 8楼 smallyou93 的帖子

膜拜晕儿大牛

还有那个命令行扫描 也可以试下
smallyou93
发表于 2009-4-12 19:31:55 | 显示全部楼层

回复 11楼 backway 的帖子

你表装了,backway大牛...

怎么样命令性扫描?。。
PS:Avira AntiVir on-demand scanner是在命令行中扫描的工具。http://www.avira.com/en/support/support_downloads.html有相关信息。有兴趣的话可以研究下,然后发一水帖。


没看懂...

[ 本帖最后由 smallyou93 于 2009-4-12 19:32 编辑 ]
backway
 楼主| 发表于 2009-4-12 19:34:28 | 显示全部楼层

回复 12楼 smallyou93 的帖子

Avira AntiVir command line scanner (unicode for Windows 2000, XP and Vista)这个
慢慢玩吧,我要出去会。
smallyou93
发表于 2009-4-12 19:47:01 | 显示全部楼层
http://dlpro.antivir.com/down/windows/antivir_avcls_en.zip


avcls.exe
readme_en.txt(说明。。)
eula.txt(最终用户许可协议)

readme_en.txt
Avira AntiVir AVCLS
*******************

Copyright © 2008 Avira GmbH.
All rights reserved.

Content
*******
1. Content of the Package
2. Necessary Update Files
3. Licensing  
4. Command Line Mode   
5. Contact Address



1. Content of the Package
*************************

The zip archive contains the commandline scanner, the license agreement and this readme:

avcls.exe
eula.txt
readme.txt

You will find here a commandline scanner in unicode version for Windows 2000, XP and Vista.


2. Necessary Update Files
*************************

All necessary files are located in our update package fusebundle, which is available on our homepage:
http://www.avira.com/en/support/vdf_update_info.html

AntiVir unicode update package (Windows 2000, XP, XP 64Bit, Vista 32 Bit and Vista 64 Bit):
http://dl.antivir.de/down/vdf/ivdf_fusebundle_nt_en.zip

Please, download the file and unpack all contained files into the same directory as the commandline scanner.

The following files are necessary:

antivirX.vdf - AntiVir virus definition files
avewin32.dll - AntiVir engine
avpack32.dll - AntiVir pack routines for archive files
avrep.dll    - AntiVir repair functions


3. Licensing
************

Furthermore you need a digital license file in order to run the commandline scanner as a full version.

The usual license files will be supported (AntiVir Workstation, Premium, Premium Security Suite). The command line scanner will not work as a full version with the free classic license. It will run in non key mode.

4. Command Line Mode
********************

Please, use the integrated help in order to find the parameters and returncodes:
avcls /?


5. Contact Address
******************

Avira GmbH
Lindauer Str. 21
D-88069 Tettnang

Phone: +49 (0) 7542 - 500 0
Fax: +49 (0) 7542 - 525 10

Internet: http://www.avira.com
Email:    info@avira.com[quote]

avcls /?
[quote]AntiVir/Win32-Console Version 7.6.0.59, (Jan 29 2008, 18:11:09)
Copyright(c) 2007 Avira GmbH

Usage is: AVCLS [options] [path[\*.ext]] [*.ext]
where options are:
-? / -h ......... display the help text
-allfiles ....... scan all files
-defext ......... use the default extension list for scanning
-allboot ........ scan all boot records
-alldrives ...... scan all drives
-allhard ........ scan all hard disks
-allremote ...... scan all network drives
-wub ............ save unknown boot records to file '.\UKB.SAV'
-s .............. scan subdirectories
-z .............. files in archives will be extracted and scanned
-noboot ......... do not check any boot records
-nombr .......... do not check any master boot records
-nobreak ........ disable Ctl-C and Ctrl-Break
-v .............. verbose scan mode
-nopack ......... do not scan inside packed files
-e [-del | -ren]  repair detected files if possible
                   [-del] non-repairable files will be deleted
                   [-ren] non-repairable files will be renamed
-ren ............ rename detected files (*.COM->*.VOM,...)
-del ............ delete detected files
-dmnoheur ....... disable macro heuristic
-dmdel .......... delete documents containing suspicious macros
-dmdas .......... delete all macros if one appears to be suspicious
-dmse ........... set exit code to 101 if any macro was found
-heuristic[:|=]1  heuristic detection rate low
-heuristic[:|=]2  heuristic detection rate medium
-heuristic[:|=]3  heuristic detection rate high
-r1 ............. just log infections and warnings
-r2 ............. log all scanned paths in addition
-r3 ............. log all scanned files
-r4 ............. select verbose log mode
-rs ............. select single-line log messages
-rf<filename> ... name of log file
                   ?d = day, ?m = month, ?y = year (two digits each)
-ra ............. append new log data to existing file
-ro ............. overwrite existing log file
-q .............. quiet mode
-lang[:|=]DE .... use German texts
-lang[:|=]EN .... use English texts
-once ........... run AVCLS only once a day
-tmp<dir> ....... specify the directory for temporary files
-x<dir> ......... AVCLS looks for its files e.g. 'antivir3.vdf' in <dir>
-if<filename> ... AVCLS uses the given ini file
-kf<filename> ... AVCLS uses the given license file
-with-<type> .... detect unwanted programs,
                   like "dial", "joke", "game", "bdc"
                   "heur-dblext", "pck", "spr", "adspy", "appl"
                   the following types are enabled by default:
                   "dial", "bdc", "heur-dblext", "adspy"
-without-<type>.. like --with-<type>, but disables this type
-alltypes ....... combination of all known -with-<type> options
-qua-<type> <dir> the quarantine function enables detected files
                   to be isolate in special
                   directory by specifying:
                   "qua-move <dir>", "qua-copy <dir>"
                   or rather "-qua-restore <dir>", "-qua-delete <dir>
                   to restore or delete files
@<rspfile> ...... read parameters from the file <rspfile>
                   with each option in a separate line

list of return codes:
   0: Normal program termination, no malware, no error
   1: Detection pattern was found in a file or boot sector
   2: A detection pattern was found in memory
   3: Suspicious file found
100: AVCLS only has displayed this help text
101: A macro was found in a document file
102: The parameter -once was given and AVCLS already ran today
200: Program aborted, not enough memory available
201: The given response file could not be found
202: Within a response file another @<rsp> directive was found
203: Invalid parameter
204: Invalid (non-existent) directory given at command line
205: The log file could not be created
210: AVCLS could not find a necessary dll file
211: Programm aborted, because the self check failed
212: Virus definition file could not be found or read error
213: An error occured during initialisation


examples:
   scan all files on drive C:
    AVCLS -s C:\*
   scan, repair & delete damaged/overwritten files on drives C: and D:
    AVCLS C:\ D:\ -s -e
smallyou93
发表于 2009-4-12 19:48:31 | 显示全部楼层

回复 13楼 backway 的帖子

886
smallyou93
发表于 2009-4-12 19:49:08 | 显示全部楼层
网络问题,发多了,请删除...

[ 本帖最后由 smallyou93 于 2009-4-12 19:51 编辑 ]
jefffire
头像被屏蔽
发表于 2009-4-12 19:54:49 | 显示全部楼层
好工具支持
MagicFuzzX
发表于 2009-4-12 20:03:13 | 显示全部楼层
崇拜BW大牛
smallyou93
发表于 2009-4-12 20:11:26 | 显示全部楼层

回复 18楼 smilediy 的帖子

石头来了。。

再膜拜一下backway大牛
赤蓝 该用户已被删除
发表于 2009-4-12 21:56:21 | 显示全部楼层
如果用AVG免费版,再加个红伞的AntiRootkit工具怎样?
其实XueTr也很强
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2024-11-15 10:47 , Processed in 0.094777 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表