Endpoint Protection

 View Only
  • 1.  Unable to get virus definitions to install

    Posted Dec 20, 2017 06:30 PM

    I have SEP 14 installed on Windows 2012.  This is a computer that does not connect to the internet.  I downloaded the latest definitions file (I've tried both 32-bit and 64-bit just in case), but the updater fails every time.  I've checked the boards and my dlls are set correctly.  How do I solve this?  The application is there but has no definitions at this point.  Thank you.

    Wed Dec 20 22:20:23 2017 : ******************************************************************
    Wed Dec 20 22:20:23 2017 : Starting Intelligent Updater - Version 5.1.7.21
    Wed Dec 20 22:20:23 2017 : ******************************************************************
    Wed Dec 20 22:20:23 2017 : AUTH SYMSIGNED BEGIN: Started.
    Wed Dec 20 22:20:23 2017 : AUTH SYMSIGNED CLASS3 BEGIN: Entering CriticalSection Initialization .
    Wed Dec 20 22:20:23 2017 : AUTH SYMSIGNED CLASS3: Finding code signing : TRUE.
    Wed Dec 20 22:20:23 2017 : AUTH SYMSIGNED END: Finished processing. Returns TRUE
    Wed Dec 20 22:20:23 2017 : IU RES SYMSIGNED SUCCESS: Successfully verified Symantec Signature for the iuResource DLL
    Wed Dec 20 22:20:23 2017 : IU RES LOAD: Successfully loaded the resource file..
    Wed Dec 20 22:20:23 2017 : CONFIG LOAD SUCCESS: Successfully loaded the configuration file: iuConfig.xml.
    Wed Dec 20 22:20:23 2017 : IU INFO: File-name : 20171220-008-Core16v5i32.EXE
    Wed Dec 20 22:20:23 2017 : IU INFO: Creation-date : 20171220
    Wed Dec 20 22:20:23 2017 : AUTH DLL LOCATION: IU will read the DLL SAVIUAuth location from registry.
    Wed Dec 20 22:20:24 2017 : REG FAILURE: Failed while opening the key  from registry. Return code: 2
    Wed Dec 20 22:20:24 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:24 2017 : REG SUCCESS: Succeeded while fetching the path from registry.
    Wed Dec 20 22:20:24 2017 : AUTH DLL: DLL found for Entry number 0.
    Wed Dec 20 22:20:24 2017 : Identified as 32-bit product installation. Continuing...
    Wed Dec 20 22:20:24 2017 : IU MODE: IU is running is FULL mode.
    Wed Dec 20 22:20:26 2017 : CONFIG LOAD SUCCESS: Successfully loaded the configuration file: iuConfig.xml.
    Wed Dec 20 22:20:26 2017 : IU INFO: File-name : 20171220-008-Core16v5i32.EXE
    Wed Dec 20 22:20:26 2017 : IU INFO: Creation-date : 20171220
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: SAVIUAuth
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: SAVIUDeploy
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - SAVIUAuth
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Succeeded while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - SAVIUDeploy
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Succeeded while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED BEGIN: Started.
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED CLASS3 BEGIN: Entering CriticalSection Initialization .
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED CLASS3: Finding code signing : TRUE.
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED END: Finished processing. Returns TRUE
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED SUCCESS: Successfully verified Symantec Signature for the authorization dll C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.0.3752.1000.105\Bin\LuAuth.dll
    Wed Dec 20 22:20:26 2017 : AUTH LOAD SUCCESS: Successfully loaded the authorization dll - C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.0.3752.1000.105\Bin\LuAuth.dll
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED BEGIN: Started.
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED CLASS3 BEGIN: Entering CriticalSection Initialization .
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED CLASS3: Finding code signing : TRUE.
    Wed Dec 20 22:20:26 2017 : AUTH SYMSIGNED END: Finished processing. Returns TRUE
    Wed Dec 20 22:20:26 2017 : DEPLOY SYMSIGNED SUCCESS: Successfully verified Symantec Signature for the deployment dll C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.0.3752.1000.105\Bin\DuLuCbk.dll
    Wed Dec 20 22:20:26 2017 : DEPLOY LOAD SUCCESS: Successfully loaded the deployment dll - C:\Program Files (x86)\Symantec\Symantec Endpoint Protection\14.0.3752.1000.105\Bin\DuLuCbk.dll
    Wed Dec 20 22:20:26 2017 : AUTHORIZATION FAILED: VIRSCAN.zip is not authorized for deployment. Error code : 104
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because it is not authorized for deployment
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: ISAuthDLL
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: ISDeployDLL
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - ISAuthDLL
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - ISDeployDLL
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: Norton X32 AuthDLL
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: VirusDefs
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: VirusDefs
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: Norton X32 DeployDLL
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - Norton X32 AuthDLL
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - Norton X32 DeployDLL
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: SSEIUAuth
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: SSEIUDeploy
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - SSEIUAuth
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - SSEIUDeploy
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: SSEIUAuth
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: csapi_defs
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: csapi_defs
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: SSEIUDeploy
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - SSEIUAuth
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - SSEIUDeploy
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: SMSDOMIUAuth
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: SMSDOMIUDeploy
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - SMSDOMIUAuth
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - SMSDOMIUDeploy
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.
    Wed Dec 20 22:20:26 2017 : PROCESSING ENTRY: VIRSCAN.zip - Virus Definitions
    Wed Dec 20 22:20:26 2017 : Entry details:
    Wed Dec 20 22:20:26 2017 : Update-File: VIRSCAN.zip
    Wed Dec 20 22:20:26 2017 : Update-Desc: Virus Definitions
    Wed Dec 20 22:20:26 2017 : Auth DLL Name: SMSMSEIUAuth
    Wed Dec 20 22:20:26 2017 : Auth DLL Location: local
    Wed Dec 20 22:20:26 2017 : Auth Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy Content-Type: virus definitions x32
    Wed Dec 20 22:20:26 2017 : Deploy DLL Name: SMSMSEIUDeploy
    Wed Dec 20 22:20:26 2017 : Deploy DLL Location: local
    Wed Dec 20 22:20:26 2017 : AUTH DLL LOCATION: IU will read the DLL location from registry - SMSMSEIUAuth
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : DEPLOY DLL LOCATION: IU will read the DLL location from registry - SMSMSEIUDeploy
    Wed Dec 20 22:20:26 2017 : REG SUCCESS: Success while opening key 
    Wed Dec 20 22:20:26 2017 : REG FAILURE: Failed while fetching the path from registry.
    Wed Dec 20 22:20:26 2017 : IGNORE ENTRY: Ignoring entry for VIRSCAN.zip because of registry read failure. Error occurred while reading the path for the Authorization DLL from the registry.
    Wed Dec 20 22:20:26 2017 : The product corresponding to this entry in iuconfig.xml is not installed on the system.


  • 2.  RE: Unable to get virus definitions to install

    Posted Dec 21, 2017 12:06 PM

    Are you deploying it remotely or trying to install locally?

    Download and run SymDiag for error checking, does anything show up in terms of errors? Did this issue just start and had it been working previously?



  • 3.  RE: Unable to get virus definitions to install

    Broadcom Employee
    Posted Dec 21, 2017 03:07 PM

    Please ensure that you are downloading the intelligent updater from the following location as the definitions are different for version 14.

     

    https://www.symantec.com/security_response/definitions.jsp?pid=sep14

     

    Thanks,



  • 4.  RE: Unable to get virus definitions to install

    Broadcom Employee
    Posted Dec 21, 2017 03:09 PM

    Are you sure you pulled the correct files for SEP 14?

    Please post the link to the files you downloaded.



  • 5.  RE: Unable to get virus definitions to install

    Posted Apr 12, 2018 02:20 PM

    Any new ideas on this. I am having this same issue. I have a server and two workstations that are air gapped. I had a working SEPM 12 setup that I kept updated with the JDB file. Then we upgreaded to 14 RU1. The deployment and client push went fine. But when useing the newer JDB file (for SEPM 14 RU1) it would error out. So we tried to update manually with the EXE and recieved the same error listed above. We are on a Server 2008 SP1, Windows 7 64 bit setup. I cannot being in any software without a lot of paperwork and justification so... I have another setup, same as this just more clients. The JDB file also fails but I can update with the EXE files there.



  • 6.  RE: Unable to get virus definitions to install

    Posted Jun 04, 2018 01:56 PM

    I am having this issue also. We tried to update from 12 to 14 but it took a long time to just fail. We found it easier to just export our files, use Cleanwipe to remove everything and install new and import our settings. This is an air-gapped network 9 installs, 9 separate networks, Windows 2008 R2 64 bit, same install media, same instructions, same person doing the installs. The initial JDB file did process correctly, all subsequent installs, 5 worked and 4 errors out when dropping in the JDB File. I have uninstalled LU per Symantec’s instructions and reinstalled. I use the Dark-Network core15 sds file. I have tried all the others just to be sure. This is a secured network so I cannot bring in outside testing software. The error in the log is:

    [1a24:1338] ERROR MicroDefs25DefUtilsContentHandler Failed to import AV content: PstDefUpdate faileDat MicroDefs25DefUtilsContentHandler.ccp[327]

    [1a24:1338] ERROR SesmLu Import of VirusDefs failed. General failure_FAiLat SesmLu.cpp[689]

    So far, I have found no useful help. Any ideas?



  • 7.  RE: Unable to get virus definitions to install

    Posted Apr 02, 2020 12:50 PM
    Hi Sam,
    This is Nikhil i had this issue previously and i resolved this by downloading correct intelligent updater package. Please check if you have installed dark network client. If yes then you need to download specific intelligent updater package for "dark network client"(32 or 64 bit). Please try this.