Contents
Situation
You performed a managed installation of the Symantec Antivirus Corporate Edition 8.x or 9.x client. You want to convert this to an unmanaged installation instead.
Solution
Copy the GRC.DAT file to the client that you want unmanaged. Cut and paste the following into a text file called GRC.DAT and copy the GRC.DAT file to:
Symantec Antivirus Corporate Edition 8.x
- On Windows NT clients, copy the Grc.dat file to the following folder:
:\WINNT\Profiles\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5 - On Windows 2000 or Windows XP clients, copy the Grc.dat file to the following folder:
:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5
Symantec Antivirus Corporate Edition 9.x
- On Windows NT clients, copy the Grc.dat file to the following folder:
:\WINNT\Profiles\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5 - On Windows 2000, Windows XP, or Windows 2003 clients, copy the Grc.dat file to the following folder:
:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5
After a few minutes, the Symantec Antivirus client will find the Grc.dat file in this folder. Symantec Antivirus will make the appropriate changes to the registry and then delete the file. The next time that the client checks in with the parent server, the client will appear in Symantec System Center. You can force the check-in by stopping and starting the Symantec Antivirus Client service on the client or by restarting the computer.
Create a file called GRC.DAT
[KEYS] !KEY!=$REGROOT$ AlertDirectory= Connected=D1 LogFileRollOverDays=D30 LogFrequency=D0 DisableSplashScreen=D1 Parent= RemoteHomeDirectory= GRCUpdateTime=B0008230413122A283C03 ParentPattern=D1926152 !KEY!=$REGROOT$\AddressCache !KEY!=$REGROOT$\AddressCache\SECSERV01 Address_0=B002000C020000B970000AC1601240000000000000000000000000000000000000000 Protocol=SAddress_0 good=D1 !KEY!=$REGROOT$\AdministratorOnly !KEY!=$REGROOT$\AdministratorOnly\General DisplayOutdatedMessage=D0 ShowVPIcon=D0 !KEY!=$REGROOT$\AdministratorOnly\Security LockUnloadServices=D1 NetScanPassword=S UseScanNetDrivePassword=D1 UseVPUninstallPassword=D1 VPUninstallPassword= !KEY!=$REGROOT$\Common AlertParent=D1 ForwardLogs=D1 LDVPCommonConfiguration=D1 MessageBox=D1 NTCommonConfiguration=D1 RenameExt=SVIR !KEY!=$REGROOT$\Common\ForwardEvents !KEY!=$REGROOT$\Common\ForwardEvents[KEYS] !KEY!=$REGROOT$ AlertDirectory= Connected=D1 LogFileRollOverDays=D30 LogFrequency=D0 DisableSplashScreen=D1 Parent= RemoteHomeDirectory= GRCUpdateTime=B0008230413122A283C03 ParentPattern=D1926152 !KEY!=$REGROOT$\AddressCache !KEY!=$REGROOT$\AddressCache\SECSERV01 Address_0=B002000C020000B970000AC1601240000000000000000000000000000000000000000 Protocol=SAddress_0 good=D1 !KEY!=$REGROOT$\AdministratorOnly !KEY!=$REGROOT$\AdministratorOnly\General DisplayOutdatedMessage=D0 ShowVPIcon=D0 !KEY!=$REGROOT$\AdministratorOnly\Security LockUnloadServices=D1 NetScanPassword=S UseScanNetDrivePassword=D1 UseVPUninstallPassword=D1 VPUninstallPassword= !KEY!=$REGROOT$\Common AlertParent=D1 ForwardLogs=D1 LDVPCommonConfiguration=D1 MessageBox=D1 NTCommonConfiguration=D1 RenameExt=SVIR !KEY!=$REGROOT$\Common\ForwardEvents !KEY!=$REGROOT$\Common\ForwardEvents\0 2=D1 26=D1 27=D1 28=D0 29=D0 30=D1 31=D1 32=D1 33=D1 18=D0 25=D1 24=D0 23=D0 22=D1 21=D1 20=D0 16=D0 14=D1 13=D1 12=D0 7=D1 6=D0 5=D1 4=D0 3=D1 !KEY!=$REGROOT$\Common\ForwardEvents\47 472001=D1 472000=D0 472004=D0 472003=D1 !KEY!=$REGROOT$\Common\ForwardEvents\49 492002=D1 492001=D1 492000=D0 492003=D1 !KEY!=$REGROOT$\LiveUpdateSource EncryptPassword=D1 UseDefault=D1 !KEY!=$REGROOT$\LocalScans !KEY!=$REGROOT$\LocalScans\ManualScan FileType=D0 FirstAction=D5 FirstMacroAction=D5 Logger=D1 MessageBox=D0 ScanAllDrives=D1 ScanBootSector=D1 ScanMemory=D1 SecondAction=D1 SecondMacroAction=D1 Softmice=D1 Types=D6 ZipDepth=D3 ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM ZipFile=D1 ShowStatusDialog=D0 DisplayStatusDialog=D0 Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,\ VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,\ JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG !KEY!=$REGROOT$\PatternManager AdminForcedLUCheckInterval=D30 CheckConfigMinutes=D60 EnableAdminForcedLU=D0 EnableProductUpdates=D0 LockUpdatePattern=D0 LockUpdatePatternScheduling=D0 MaxDefsDaysOldAllowed=D5 UpdateClients=D1 !KEY!=$REGROOT$\PatternManager\Schedule DayOfMonth=D0 DayOfWeek=D5 Enabled=D0 MinOfDay=D1200 MissedEventEnabled=D1 RandomizationGenerate=D17 RandomizeDayEnabled=D1 RandomizeDayRange=D480 RandomizeMonthEnabled=D0 RandomizeWeekEnabled=D1 RandomizeWeekEnd=D6 RandomizeWeekStart=D4 SkipEvent=D0 TimeWindowDaily=D8 TimeWindowWeekly=D3 Type=D2 !KEY!=$REGROOT$\ProductControl ManageThisComputer=D0 !KEY!=$REGROOT$\Quarantine BackupItemPurgeAgeLimit=D90 BackupItemPurgeEnabled=D1 BackupItemPurgeFrequency=D0 DefWatchMode=D0 ForwardingEnabled=D0 ForwardingPort=D0 ForwardingProtocol=D0 ForwardingServer=S ForwardingServerRetryTimer=D600 ForwardingServerTimer=D1800 QuarantinePurgeAgeLimit=D90 QuarantinePurgeEnabled=D1 QuarantinePurgeFrequency=D0 RepairedItemPurgeAgeLimit=D90 RepairedItemPurgeEnabled=D1 RepairedItemPurgeFrequency=D0 ScanDeliverEnabled=D0 ScanDeliverResubmit=D0 !KEY!=$REGROOT$\Storages !KEY!=$REGROOT$\Storages\FileSystem !KEY!=$REGROOT$\Storages\FileSystem\RealTimeScan APEOn=D0 APESleep=D5 BackupToQuarantine=D1 CDRoms=D0 Cache=D1 ConfigRestart=D1 CheckRemovable=D1 DenyAccess=D2 DoCompressed=D0 DriveList=S ExcludedByExtensions=D0 Execs=D1 Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,\ VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,\ JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG FileCacheEntries=D0 FileType=D0 FirstAction=D5 FirstGreywareAction=D4 FirstMacroAction=D5 FloppyBRAction=D5 FloppyBRWrite=D0 Floppys=D1 HardDisks=D1 HardDriveBRWrite=D1 HaveExceptionDirs=D0 HaveExceptionFiles=D0 Heuristics=D1 HeuristicsLevel=D2 HoldOnClose=D1 LowLevelFormat=D1 MessageBox=D1 Networks=D1 OnOff=D1 Reads=D1 RemoveAlert=D0 RemoveAlertSeconds=D1 ScanFloppyBROnAccess=D1 SecondAction=D1 SecondGreywareAction=D4 SecondMacroAction=D1 Softmice=D1 Storage=D0 Trap=D0 Types=D6 Writes=D1 ZipDepth=D3 ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM ZipFile=D0 !KEY!=$REGROOT$\Storages\InternetMail !KEY!=$REGROOT$\Storages\InternetMail\RealTimeScan AlertSenderServerName=Smail AlertSelectedServerName=Smail ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 FirstOehAction=D1 SecondMacroAction=D1 SecondAction=D1 SecondOehAction=D3 OnOff=D1 OehOnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D0 !KEY!=$REGROOT$\Storages\LotusNotes !KEY!=$REGROOT$\Storages\LotusNotes\RealTimeScan ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 SecondMacroAction=D1 SecondAction=D1 OnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D0 !KEY!=$REGROOT$\Storages\MicrosoftExchangeClient !KEY!=$REGROOT$\Storages\MicrosoftExchangeClient\RealTimeScan ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 SecondMacroAction=D1 SecondAction=D1 OnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D02=D1 26=D1 27=D1 28=D0 29=D0 30=D1 31=D1 32=D1 33=D1 18=D0 25=D1 24=D0 23=D0 22=D1 21=D1 20=D0 16=D0 14=D1 13=D1 12=D0 7=D1 6=D0 5=D1 4=D0 3=D1 !KEY!=$REGROOT$\Common\ForwardEvents 472001=D1 472000=D0 472004=D0 472003=D1 !KEY!=$REGROOT$\Common\ForwardEvents 492002=D1 492001=D1 492000=D0 492003=D1 !KEY!=$REGROOT$\LiveUpdateSource EncryptPassword=D1 UseDefault=D1 !KEY!=$REGROOT$\LocalScans !KEY!=$REGROOT$\LocalScans\ManualScan FileType=D0 FirstAction=D5 FirstMacroAction=D5 Logger=D1 MessageBox=D0 ScanAllDrives=D1 ScanBootSector=D1 ScanMemory=D1 SecondAction=D1 SecondMacroAction=D1 Softmice=D1 Types=D6 ZipDepth=D3 ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM ZipFile=D1 ShowStatusDialog=D0 DisplayStatusDialog=D0 Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,\ VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,\ JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG !KEY!=$REGROOT$\PatternManager AdminForcedLUCheckInterval=D30 CheckConfigMinutes=D60 EnableAdminForcedLU=D0 EnableProductUpdates=D0 LockUpdatePattern=D0 LockUpdatePatternScheduling=D0 MaxDefsDaysOldAllowed=D5 UpdateClients=D1 !KEY!=$REGROOT$\PatternManager\Schedule DayOfMonth=D0 DayOfWeek=D5 Enabled=D0 MinOfDay=D1200 MissedEventEnabled=D1 RandomizationGenerate=D17 RandomizeDayEnabled=D1 RandomizeDayRange=D480 RandomizeMonthEnabled=D0 RandomizeWeekEnabled=D1 RandomizeWeekEnd=D6 RandomizeWeekStart=D4 SkipEvent=D0 TimeWindowDaily=D8 TimeWindowWeekly=D3 Type=D2 !KEY!=$REGROOT$\ProductControl ManageThisComputer=D0 !KEY!=$REGROOT$\Quarantine BackupItemPurgeAgeLimit=D90 BackupItemPurgeEnabled=D1 BackupItemPurgeFrequency=D0 DefWatchMode=D0 ForwardingEnabled=D0 ForwardingPort=D0 ForwardingProtocol=D0 ForwardingServer=S ForwardingServerRetryTimer=D600 ForwardingServerTimer=D1800 QuarantinePurgeAgeLimit=D90 QuarantinePurgeEnabled=D1 QuarantinePurgeFrequency=D0 RepairedItemPurgeAgeLimit=D90 RepairedItemPurgeEnabled=D1 RepairedItemPurgeFrequency=D0 ScanDeliverEnabled=D0 ScanDeliverResubmit=D0 !KEY!=$REGROOT$\Storages !KEY!=$REGROOT$\Storages\FileSystem !KEY!=$REGROOT$\Storages\FileSystem\RealTimeScan APEOn=D0 APESleep=D5 BackupToQuarantine=D1 CDRoms=D0 Cache=D1 ConfigRestart=D1 CheckRemovable=D1 DenyAccess=D2 DoCompressed=D0 DriveList=S ExcludedByExtensions=D0 Execs=D1 Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,\ VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,\ JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG FileCacheEntries=D0 FileType=D0 FirstAction=D5 FirstGreywareAction=D4 FirstMacroAction=D5 FloppyBRAction=D5 FloppyBRWrite=D0 Floppys=D1 HardDisks=D1 HardDriveBRWrite=D1 HaveExceptionDirs=D0 HaveExceptionFiles=D0 Heuristics=D1 HeuristicsLevel=D2 HoldOnClose=D1 LowLevelFormat=D1 MessageBox=D1 Networks=D1 OnOff=D1 Reads=D1 RemoveAlert=D0 RemoveAlertSeconds=D1 ScanFloppyBROnAccess=D1 SecondAction=D1 SecondGreywareAction=D4 SecondMacroAction=D1 Softmice=D1 Storage=D0 Trap=D0 Types=D6 Writes=D1 ZipDepth=D3 ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM ZipFile=D0 !KEY!=$REGROOT$\Storages\InternetMail !KEY!=$REGROOT$\Storages\InternetMail\RealTimeScan AlertSenderServerName=Smail AlertSelectedServerName=Smail ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 FirstOehAction=D1 SecondMacroAction=D1 SecondAction=D1 SecondOehAction=D3 OnOff=D1 OehOnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D0 !KEY!=$REGROOT$\Storages\LotusNotes !KEY!=$REGROOT$\Storages\LotusNotes\RealTimeScan ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 SecondMacroAction=D1 SecondAction=D1 OnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D0 !KEY!=$REGROOT$\Storages\MicrosoftExchangeClient !KEY!=$REGROOT$\Storages\MicrosoftExchangeClient\RealTimeScan ZipFile=D1 ZipDepth=D3 ChangeMessageSubject=D0 FirstMacroAction=D5 FirstAction=D5 SecondMacroAction=D1 SecondAction=D1 OnOff=D1 FileType=D0 MessageBox=D1 InsertWarning=D1 NotifySender=D0 NotifySelected=D0
Use regedit to go through registry, remove parent servers.
[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion] "Parent"="" "AlertDirectory"="" "RemoteHomeDirectory"="" "ClientGroup"="" [HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\AddressCache]
Source(s)
- www.symantec.com
- http://www.symantec.com/avcenter/download/pages/US-N95.html
- ftp://ftp.symantec.com/public/english_us_canada/liveupdate/3.0/lusetup.exe