{"id":714,"date":"2010-02-09T16:01:49","date_gmt":"2010-02-09T09:01:49","guid":{"rendered":"http:\/\/ji.itkaset.com\/?p=714"},"modified":"2020-11-05T08:45:49","modified_gmt":"2020-11-05T01:45:49","slug":"advanced-usage-of-avira-antivir-rescue-system-bootcd","status":"publish","type":"post","link":"https:\/\/tom.tomwork.net\/?p=714","title":{"rendered":"Advanced Usage of Avira AntiVir Rescue System BootCD"},"content":{"rendered":"<p>Before you start typing anything, please be informed that the antivirus is programmed to type in German keyboard layout. For example, when you press the \u2013 key on your keyboard, you\u2019ll notice that it chances to \u00df. Refer to the image below on what to type to get what character.<\/p>\n<p>So here are all the commands for your convenience.<!--more--><\/p>\n<blockquote><p><code>Usage is: antivir [options] [path[*.ext]] [*.ext]<br \/>\nwhere options are:<br \/>\n--help .......... display this help text (abbreviation: -h or -?)<br \/>\n--scan-mode= applies \"extlist\", \"smart\" or \"all\" scan methods:<br \/>\nextlist scans files according to their filename extension,<br \/>\nsmart detects which files to scan from their name\/content,<br \/>\nall scans all files regardless of their name or content<br \/>\n--allfiles ...... synonymous for --scan-mode=all<br \/>\n--version ....... show version information<br \/>\n--info .......... show list of recognized forms<br \/>\n--update ........ update antivir<br \/>\n--check ......... used with --update to check for updates<br \/>\n--temp=(dir) .... specify the directory for temporary files<br \/>\n--pid-dir=(dir) . specify the directory for PID files<br \/>\n--home-dir=(dir) location of executable, VDF and key files<br \/>\n-C (filename) ... name of configuration file<br \/>\n-s .............. scan subdirectories<br \/>\n--scan-in-archive files in archives will be extracted and scanned<br \/>\n-z .............. synonymous for --scan-in-archive (scan in archives, too)<br \/>\n--archive-max-size=N, --archive-max-recursion=N, --archive-max-ratio=N<br \/>\nanti DoS feature: do not scan archive content which would<br \/>\nexceed the given file size, nesting level or compression<br \/>\nfactor limits on extraction (0 means unlimited)<br \/>\n--archive-max-count=N anti DoS feature: do not scan archive content which<br \/>\nhas more than N files in a recursion level<br \/>\n--scan-in-mbox .. scan mailbox folders, too (might be time consuming!)<br \/>\n--heur-macro .... enable macro heuristics<br \/>\n--heur-nomacro .. disable macro heuristics<br \/>\n--heur-level=N .. setup heuristics level: 0=off, 1-3=low-high<br \/>\n-nolnk .......... do not follow symbolic links<br \/>\n-onefs .......... do not cross file systems while following links<br \/>\n-noboot ......... do not check any boot records<br \/>\n-nombr .......... do not check any master boot records<br \/>\n-nobreak ........ disable Ctl-C and Ctrl-Break<br \/>\n-nodef ......... do only check the given file types (eg. *.DOC)<br \/>\n-cf(filename) ... activate CRC check and name the database<br \/>\n-cv ............. calculate CRC over the whole file length (default 16k)<br \/>\n-cn ............. insert new files into the database<br \/>\n-cu ............. recalculate CRC values and update the database<br \/>\n-v .............. scan files completely (slower with possible false alerts)<br \/>\n-nopack ......... do not scan inside packed files<br \/>\n-e [-del | -ren] repair concerning files if possible<br \/>\n[-del] non-repairable files will be deleted<br \/>\n[-ren] non-repairable files will be renamed<br \/>\n-ren ............ rename concerning files (*.COM-&gt;*.XXX,...)<br \/>\n-del ............ delete concerning files<br \/>\n--moveto=(dir) .. quarantine concerning files<br \/>\n-dmdel .......... delete documents containing suspicious macros<br \/>\n-dmdas .......... delete all macros if one appears to be suspicious<br \/>\n-dmse ........... set exit code to 101 if any macro was found<br \/>\n-r1 ............. just log infections and warnings<br \/>\n-r2 ............. log all scanned paths in addition<br \/>\n-r3 ............. log all scanned files<br \/>\n-r4 ............. select verbose log mode<br \/>\n-rs ............. select single-line alert messages<br \/>\n-rf(filename) ... name of log file<br \/>\n%d = day, %m = month, %y = year (two digits each)<br \/>\n-ra ............. append new log data to existing file<br \/>\n-ro ............. overwrite existing log file<br \/>\n-q .............. quiet mode<br \/>\n-lang[:|=]DE .... use German texts<br \/>\n-lang[:|=]EN .... use English texts<br \/>\n-once ........... run only once a day<br \/>\n-if(dateiname) .. antivir uses the given ini file<br \/>\n--with-(type) ... detect other (non-virus but unwanted) software, too;<br \/>\ntype may be e.g. \"dial\", \"joke\", \"game\", etc,<br \/>\nthere is a --with-alltypes shortcut<br \/>\n--without-(type) like --with-(type), but disables this type<br \/>\n--alltypes ...... synonymous for --with-alltypes (obsolete)<br \/>\n--alert-urls=(yes|no) print URL for more detailed information on alerts<br \/>\n--warnings-as-alerts exit with a return code as if a concerning file<br \/>\nhad been found when warnings have been issued<br \/>\n--exclude=(file) exclude files or directories from scan<br \/>\n--log-email=(addr) send out scan report by email, too<br \/>\n@(rspfile) ...... read parameters from the file (rspfile)<br \/>\nwith each option in a separate line<\/code><\/p>\n<p>list of return codes:<br \/>\n0: Normal program termination, nothing found, no error<br \/>\n1: Found concerning file or boot sector<br \/>\n2: An alert was found in memory<br \/>\n3: Suspicious file found<br \/>\n100: antivir only has displayed this help text<br \/>\n101: A macro was found in a document file<br \/>\n102: The option -once was given and antivir already ran today<br \/>\n200: Program aborted, not enough memory available<br \/>\n201: The given response file could not be found<br \/>\n202: Within a response file another @(rsp) directive was found<br \/>\n203: Invalid option<br \/>\n204: Invalid (non-existent) directory given at command line<br \/>\n205: The log file could not be created<br \/>\n210: antivir could not find a necessary dll file<br \/>\n211: Programm aborted, because the self check failed<br \/>\n212: The file antivir.vdf could not be read<br \/>\n213: An error occured during initialization<br \/>\n214: License key not found<\/p><\/blockquote>\n","protected":false},"excerpt":{"rendered":"<p>Before you start typing anything, please be informed that the antivirus is programmed to type in German keyboard layout. For example, when you press the \u2013 key on your keyboard, you\u2019ll notice that it chances to \u00df. Refer to the image below on what to type to get what character. So here are all the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"jetpack_post_was_ever_published":false,"_jetpack_newsletter_access":"","_jetpack_dont_email_post_to_subs":false,"_jetpack_newsletter_tier_id":0,"_jetpack_memberships_contains_paywalled_content":false,"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":false,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[13],"tags":[],"class_list":["post-714","post","type-post","status-publish","format-standard","hentry","category-13"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"","jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p6cOVM-bw","_links":{"self":[{"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/posts\/714","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=714"}],"version-history":[{"count":1,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/posts\/714\/revisions"}],"predecessor-version":[{"id":24481,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=\/wp\/v2\/posts\/714\/revisions\/24481"}],"wp:attachment":[{"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=714"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=714"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/tom.tomwork.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=714"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}