How to enable tracing in Kaspersky Anti-Virus 8.0 for Windows Servers Enterprise Edition

 

Kaspersky Anti-Virus 8.0 for Windows Servers Enterprise Edition

 
 
 

How to enable tracing in Kaspersky Anti-Virus 8.0 for Windows Servers Enterprise Edition

Back to "Troubleshooting"
2014 Oct 24 ID: 4607
 
 
 
 

You can enable tracing in Kaspersky Anti-Virus 8.0 for Windows Servers Enterprise Edition either via Anti-Virus Console or from command line on the server. Yet Anti-Virus Console allows selecting particular subsystems of the Anti-Virus to trace. If you enable tracing from command line prompt, it will be enabled for all subsystems.

The tracing can be enabled in Anti-Virus Console on the tab Malfunction diagnosis in Kaspersky Anti-Virus properties:

Each Kaspersky Anti-Virus subsystem saves its trace file in a separate file in a selected folder (debug files folder).

It is important:

    1. there must exist a folder for trace files;

    2. do not use folders on network drives on the server or on disks created via the command SUBST to save trace files;

    3. observe the case of letters when typing names of Kaspersky Anti-Virus subsystems to be traced (debugged components);

    4. subsystems should be separated with a symbol of coma;

    5. when a trace file reaches its maximum size, Anti-Virus starts writing a new file. Old files remain;

    6. file size may vary depending on the trace details level and write time, it can be very large. Make sure you have enough free disk space before enabling generation of traces.

    7. Do not leave the traces enabled for a long time, it can affect your server performance.

Codes of Anti-Virus subsystems


Subsystem code

Subsystem name

When Anti-Virus will start writing a trace file

*

All subsystems

gui

Anti-Virus Console installed on a protected server

After restarting the Console

ak_conn

Subsystem providing integration with Kaspersky Administration Kit Network Agent

After restarting Network Agent

bl

Control process; provides Kaspersky Anti-Virus management functions

Immediately after saving traces settings

wp

Work process; provides antivirus protection tasks

blgate

Provides remote management of Kaspersky Anti-Virus

ods

On-demand-scan subsystem

oas

Real-time protection subsystem

qb

Quarantine and backup storage subsystem

scandll

Auxiliary antivirus scan module

core

Basic antivirus functionality subsystem

avscan

Antivirus processing subsystem

avserv

Antivirus kernel management subsystem

prague

Basic functionality subsystem

scsrv

Script interceptor query dispatcher subsystem

script

Scrip interceptor

updater

Antivirus databases and application modules update subsystem


The code gui enables tracing only for the Console installed on the protected server!
In order to enable tracing on a remote console, it is necessary to add the following system registry key on that host and restart the Console:

  • Microsoft Windows 32 bit (download a ready .reg file for 32 bit OS):

    [HKEY_LOCAL_MACHINE\Software\KasperskyLab\WSEE\8.0\Trace\]
    Configuration=sub-system=gui;level=info;sink=folder(<trace_folder_full_path>);roll=50000;layout=basic;logging=on

  • Microsoft Windows 64 bit (download a ready .reg file for 64 bit OS):

    [HKEY_LOCAL_MACHINE\Software\Wow6432Node\KasperskyLab\WSEE\8.0\Trace\]
    Configuration=sub-system=gui;level=info;sink=folder(<trace_folder_full_path>);roll=50000;layout=basic;logging=on

If you enable tracing with these ready .reg files, trace logs will be saved into the folder C:\Temp.

 
 
 
 
Was this information helpful?
Yes No
Thank you
 

 
 

How can we improve this article?

Your feedback will be used for content improvement purposes only. If you need assistance, please contact technical support.

Submit Submit

Thank you for your feedback!

Your suggestions will help improve this article.

OK