Change Managed installation to UnManaged Symantec Antivirus

Situation
You performed a managed installation of the Symantec Antivirus Corporate Edition 8.x or 9.x client. You want to convert this to an unmanaged installation instead.

Solution
Copy the GRC.DAT file to the client that you want unmanaged. Cut and paste the following into a text file called GRC.DAT and copy the GRC.DAT file to:

Symantec Antivirus Corporate Edition 8.x
– On Windows NT clients, copy the Grc.dat file to the following folder:
:\WINNT\Profiles\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5
– On Windows 2000 or XP clients, copy the Grc.dat file to the following folder:
:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5
Symantec AntiVirus Corporate Edition 9.x
– On Windows NT clients, copy the Grc.dat file to the following folder:
:\WINNT\Profiles\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5
– On Windows 2000, XP, or 2003 clients, copy the Grc.dat file to the following folder:
:\Documents and Settings\All Users\Application Data\Symantec\Symantec AntiVirus Corporate Edition\7.5

After a few minutes, the Symantec AntiVirus client will find the Grc.dat file in this folder. Symantec AntiVirus will make the appropriate changes to the registry and then delete the file. The next time that the client checks in with the parent server, the client will appear in Symantec System Center. You can force the check-in by stopping and starting the Symantec AntiVirus Client service on the client or by restarting the computer.

Create a file called GRC.DAT

[KEYS]
!KEY!=$REGROOT$
AlertDirectory=
Connected=D1
LogFileRollOverDays=D30
LogFrequency=D0
DisableSplashScreen=D1
Parent=
RemoteHomeDirectory=
GRCUpdateTime=B0008230413122A283C03
ParentPattern=D1926152
!KEY!=$REGROOT$\AddressCache
!KEY!=$REGROOT$\AddressCache\SECSERV01
Address_0=B002000C020000B970000AC1601240000000000000000000000000000000000000000
Protocol=SAddress_0
good=D1
!KEY!=$REGROOT$\AdministratorOnly
!KEY!=$REGROOT$\AdministratorOnly\General
DisplayOutdatedMessage=D0
ShowVPIcon=D0
!KEY!=$REGROOT$\AdministratorOnly\Security
LockUnloadServices=D1
NetScanPassword=S
UseScanNetDrivePassword=D1
UseVPUninstallPassword=D1
VPUninstallPassword=
!KEY!=$REGROOT$\Common
AlertParent=D1
ForwardLogs=D1
LDVPCommonConfiguration=D1
MessageBox=D1
NTCommonConfiguration=D1
RenameExt=SVIR
!KEY!=$REGROOT$\Common\ForwardEvents
!KEY!=$REGROOT$\Common\ForwardEvents\0
2=D1
26=D1
27=D1
28=D0
29=D0
30=D1
31=D1
32=D1
33=D1
18=D0
25=D1
24=D0
23=D0
22=D1
21=D1
20=D0
16=D0
14=D1
13=D1
12=D0
7=D1
6=D0
5=D1
4=D0
3=D1
!KEY!=$REGROOT$\Common\ForwardEvents\47
472001=D1
472000=D0
472004=D0
472003=D1
!KEY!=$REGROOT$\Common\ForwardEvents\49
492002=D1
492001=D1
492000=D0
492003=D1
!KEY!=$REGROOT$\LiveUpdateSource
EncryptPassword=D1
UseDefault=D1
!KEY!=$REGROOT$\LocalScans
!KEY!=$REGROOT$\LocalScans\ManualScan
FileType=D0
FirstAction=D5
FirstMacroAction=D5
Logger=D1
MessageBox=D0
ScanAllDrives=D1
ScanBootSector=D1
ScanMemory=D1
SecondAction=D1
SecondMacroAction=D1
Softmice=D1
Types=D6
ZipDepth=D3
ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM
ZipFile=D1
ShowStatusDialog=D0
DisplayStatusDialog=D0
Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG
!KEY!=$REGROOT$\PatternManager
AdminForcedLUCheckInterval=D30
CheckConfigMinutes=D60
EnableAdminForcedLU=D0
EnableProductUpdates=D0
LockUpdatePattern=D0
LockUpdatePatternScheduling=D0
MaxDefsDaysOldAllowed=D5
UpdateClients=D1
!KEY!=$REGROOT$\PatternManager\Schedule
DayOfMonth=D0
DayOfWeek=D5
Enabled=D0
MinOfDay=D1200
MissedEventEnabled=D1
RandomizationGenerate=D17
RandomizeDayEnabled=D1
RandomizeDayRange=D480
RandomizeMonthEnabled=D0
RandomizeWeekEnabled=D1
RandomizeWeekEnd=D6
RandomizeWeekStart=D4
SkipEvent=D0
TimeWindowDaily=D8
TimeWindowWeekly=D3
Type=D2
!KEY!=$REGROOT$\ProductControl
ManageThisComputer=D0
!KEY!=$REGROOT$\Quarantine
BackupItemPurgeAgeLimit=D90
BackupItemPurgeEnabled=D1
BackupItemPurgeFrequency=D0
DefWatchMode=D0
ForwardingEnabled=D0
ForwardingPort=D0
ForwardingProtocol=D0
ForwardingServer=S
ForwardingServerRetryTimer=D600
ForwardingServerTimer=D1800
QuarantinePurgeAgeLimit=D90
QuarantinePurgeEnabled=D1
QuarantinePurgeFrequency=D0
RepairedItemPurgeAgeLimit=D90
RepairedItemPurgeEnabled=D1
RepairedItemPurgeFrequency=D0
ScanDeliverEnabled=D0
ScanDeliverResubmit=D0
!KEY!=$REGROOT$\Storages
!KEY!=$REGROOT$\Storages\FileSystem
!KEY!=$REGROOT$\Storages\FileSystem\RealTimeScan
APEOn=D0
APESleep=D5
BackupToQuarantine=D1
CDRoms=D0
Cache=D1
ConfigRestart=D1
CheckRemovable=D1
DenyAccess=D2
DoCompressed=D0
DriveList=S
ExcludedByExtensions=D0
Execs=D1
Exts=SDOT,DOC,HTML,HTT,HTM,VBS,JS,SHS,PPT,MSO,POT,RTF,MDB,JTD,HLP,INF,INI,HTA,MP?,OBD,OBT,PPS,SMM,VSD,VST,XL?,VSS,EXE,COM,BIN,SYS,DLL,OCX,VXD,BAT,BTM,CSC,PIF,386,CLA,OV?,DRV,SCR,ACM,ACV,ADT,AX,CPL,CSH,JSE,PL,PM,SH,SHB,VBE,WSF,WSH,JPG,JPEG
FileCacheEntries=D0
FileType=D0
FirstAction=D5
FirstGreywareAction=D4
FirstMacroAction=D5
FloppyBRAction=D5
FloppyBRWrite=D0
Floppys=D1
HardDisks=D1
HardDriveBRWrite=D1
HaveExceptionDirs=D0
HaveExceptionFiles=D0
Heuristics=D1
HeuristicsLevel=D2
HoldOnClose=D1
LowLevelFormat=D1
MessageBox=D1
Networks=D1
OnOff=D1
Reads=D1
RemoveAlert=D0
RemoveAlertSeconds=D1
ScanFloppyBROnAccess=D1
SecondAction=D1
SecondGreywareAction=D4
SecondMacroAction=D1
Softmice=D1
Storage=D0
Trap=D0
Types=D6
Writes=D1
ZipDepth=D3
ZipExts=SARJ,LHA,ZIP,MME,LZH,UUE,CAB,LZ_,RTF,UU,MIM
ZipFile=D0
!KEY!=$REGROOT$\Storages\InternetMail
!KEY!=$REGROOT$\Storages\InternetMail\RealTimeScan
AlertSenderServerName=Smail
AlertSelectedServerName=Smail
ZipFile=D1
ZipDepth=D3
ChangeMessageSubject=D0
FirstMacroAction=D5
FirstAction=D5
FirstOehAction=D1
SecondMacroAction=D1
SecondAction=D1
SecondOehAction=D3
OnOff=D1
OehOnOff=D1
FileType=D0
MessageBox=D1
InsertWarning=D1
NotifySender=D0
NotifySelected=D0
!KEY!=$REGROOT$\Storages\LotusNotes
!KEY!=$REGROOT$\Storages\LotusNotes\RealTimeScan
ZipFile=D1
ZipDepth=D3
ChangeMessageSubject=D0
FirstMacroAction=D5
FirstAction=D5
SecondMacroAction=D1
SecondAction=D1
OnOff=D1
FileType=D0
MessageBox=D1
InsertWarning=D1
NotifySender=D0
NotifySelected=D0
!KEY!=$REGROOT$\Storages\MicrosoftExchangeClient
!KEY!=$REGROOT$\Storages\MicrosoftExchangeClient\RealTimeScan
ZipFile=D1
ZipDepth=D3
ChangeMessageSubject=D0
FirstMacroAction=D5
FirstAction=D5
SecondMacroAction=D1
SecondAction=D1
OnOff=D1
FileType=D0
MessageBox=D1
InsertWarning=D1
NotifySender=D0
NotifySelected=D0

Use regedit to go through registry, remove parent servers.

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion]
"Parent"=""
"AlertDirectory"=""
"RemoteHomeDirectory"=""
"ClientGroup"=""

[HKEY_LOCAL_MACHINE\SOFTWARE\INTEL\LANDesk\VirusProtect6\CurrentVersion\AddressCache]

Inspiration: www.symantec.com
Manual Updates: http://www.symantec.com/avcenter/download/pages/US-N95.html
LiveUpdate: ftp://ftp.symantec.com/public/english_us_canada/liveupdate/3.0/lusetup.exe