TIP: Optimize McAfee VirusScan Enterprise 7.0/8.0i to Run with BES Clients
Log In or Register to download the BES file, and more.

0 Votes

Description

The listed computers are running both McAfee VirusScan Enterprise and the BES Client. As a result, the McAfee VirusScan client may be continuously scanning the BES Client's program files, resulting in computer performance issues. To avoid this conflict, BigFix recommends that users prohibit the VirusScan program from examining the BES Client program folder.

Note: Deploying this Fixlet message may prevent the McAfee VirusScan client from scanning any of the files in the BES Client folder for viruses (by default "C:\Program Files\BigFix Enterprise\BES Client"). BigFix recommends that users do a manual full system scan periodically, including this folder, to ensure a virus-free system.

Note: Affected computers will report back as 'Fixed' once the action has run successfully, but the change will not take effect until McAfee VirusScan is restarted.


Property Details

ID551
TitleTIP: Optimize McAfee VirusScan Enterprise 7.0/8.0i to Run with BES Clients
CategorySupport
Download Size0
SourceBigFix
Source ID<Unspecified>
Source SeverityImportant
KeywordsBES VirusScan McAfee Client Enterprise
Added by on 10/17/2012 1:16:10 PM
Last Modified by on 10/17/2012 1:16:10 PM
Counters 4324 Views / 8 Downloads
User Rating 1 star 2 star 3 star 4 star 5 star * Average over 0 ratings. ** Log In or Register to add your rating.

Relevance

isWindows (Relevance 274)
Used in 593 fixlets and 3 analyses   * Results in a true/false
Show indented relevance
name of operating system starts with "Win"
Used in 221 fixlets   * Results in a true/false
Show indented relevance
(if exists property "in proxy agent context" then ( not in proxy agent context ) else true )
Used in 1 fixlet   * Results in a true/false
Show indented relevance
(exists key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration" of registry) AND ((not exists value whose ((it as string = ("3|7|" & pathname of parent folder of regapp "besclient.exe" & "\")) or (it as string = ("3|15|" & pathname of parent folder of regapp "besclient.exe" & "\")) or (it as string = ("3|7|" & pathname of parent folder of regapp "besclient.exe")) or (it as string = ("3|15|" & pathname of parent folder of regapp "besclient.exe")) AND (name of it as string) contains "ExcludedItem") of key ("HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" & (if (value "OnlyUseDefaultConfig" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" of registry = 1) then "Default" else (if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\High" of registry as string contains "BESClient.exe") then "High" else if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\Low" of registry as string contains "BESClient.exe") then "Low" else "Default"))) of registry))

Actions

Action 1

Action Link Click here to optimize interactions between McAfee VirusScan and the BES Client.
Script Type BigFix Action Script
regset "[HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\{(if (value "OnlyUseDefaultConfig" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" of registry = 1) then "Default" else (if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\High" of registry as string contains "BESClient.exe") then "High" else if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\Low" of registry as string contains "BESClient.exe") then "Low" else "Default"))}]" "{("ExcludedItem_" & (number of values whose (name of it starts with "ExcludedItem") of key ("HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" & (if (value "OnlyUseDefaultConfig" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" of registry = 1) then "Default" else (if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\High" of registry as string contains "BESClient.exe") then "High" else if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\Low" of registry as string contains "BESClient.exe") then "Low" else "Default"))) of registry) as string)}"="{("3|7|" & escape of (pathname of parent folder of regapp "besclient.exe"))}"
regset "[HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\{(if (value "OnlyUseDefaultConfig" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" of registry = 1) then "Default" else (if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\High" of registry as string contains "BESClient.exe") then "High" else if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\Low" of registry as string contains "BESClient.exe") then "Low" else "Default"))}]" "NumExcludeItems"={"dword:" & ((number of values whose (name of it starts with "ExcludedItem") of key ("HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" & (if (value "OnlyUseDefaultConfig" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\" of registry = 1) then "Default" else (if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\High" of registry as string contains "BESClient.exe") then "High" else if (value "ProcessList" of key "HKEY_LOCAL_MACHINE\SOFTWARE\Network Associates\TVD\Shared Components\On Access Scanner\McShield\Configuration\Low" of registry as string contains "BESClient.exe") then "Low" else "Default")))of registry as hexadecimal as string))}
Success Criteria

This action will be considered successful when the applicability relevance evaluates to false.


Sharing

Social Media:
Share this page on Yammer

Comments

Log In or Register to leave comments!