Kaspersky Anti-Virus 8.0 for Microsoft ISA Server and Forefront TMG Standard Edition has an inbuilt runtime logging system. Each generated event log covers a certain period while the application was running.
There exist the following log types:
- kavisaYYYYMMDD.log contains application activity data;
- kavfilterYYYYMMDD.log contains data on filters activity;
- viruslogDDMMYY.log contains data on detected malicious objects;
where DD – day, MM – month, YY – year.
Please do the following to open diagnostics configuration window:
- Select the console tree node of the corresponding server.
- Click the button General settings in the right pane.
- Go to the tab Diagnostics.

The location of log files is defined in the field Log folder on sever.
Its default locations are:
- Forefront TMG Standard Edition C:\ProgramData\Kaspersky Lab\Kaspersky Anti-Virus 8.0 for Microsoft ISA Server and Forefront TMG Standard Edition\data\Logs;
- Microsoft ISA Server C:\Documents and Settings\All Users\Application Data\Kaspersky Lab\Kaspersky Anti-Virus 8.0 for Microsoft ISA Server and Forefront TMG Standard Edition\data\Logs;

The following logging settings can be modified:
- Diagnostic level. You can select a details level for all logs:
- Custom – configurable logging level. It is available for kavisaYYYYMMDD.log and kavfilterYYYYMMDD.log logs only. The button Advanced settings allows configuring the amount of details for each application component;
- None – no information is logged;
- Minimum – log major event only, like starting/stopping the application;
Minimum is the default level for all logs;
- Medium – log all major and certain additional events, like connection to updates server error;
- Maximum – log full application runtime data, except the debugging events.
- Debug – log full application runtime data, including the debugging events.
This diagnostics level can output a great amount of events leading to a possible drop of performance and a quick consumption of hard disk space. It is recommended to enable this mode only when troubleshooting the application.
- Register events rising time. Time format:
- Coordinated universal time (UTC). This is the default time.
- Local time of the server.
- Store N or less files for each log. Defines the number of log files saved on hard disk. N can be between 1 and 365. The default value is 5 (five).
- Write to new log file once a T. Where T is the frequency of creating a new log file. It can be daily, weekly or monthly. The default value is monthly.