Publié sur WindowsLinux.net (http://www.windowslinux.net) Accueil > Microsoft Security Essentials Microsoft Security Essentials [1] Téléchargements Le téléchargement de MSE (Microsoft Security Essentials) s'effectue depuis l'adresse suivante : http://windows.microsoft.com/fr-fr/windows/products/security-essentials [2] Installation automatique @ECHO OFF Echo Downloading Microsoft Security Essentials 2.0 (x86) start /wait bitsadmin /TRANSFER MSE20 http://download.microsoft.com/download/a rem 64 bits version : http://download.microsoft.com/download/a/3/8/a38ffbf2-11 Echo Insalling Microsoft Security Essentials 2.0 (x86) start /wait %temp%\mseinstall.exe /s /runwgacheck /o Echo Updating Microsoft Security Essentials Signatures "C:\Program Files\Microsoft Security Client\msseces.exe" /update Script pour scanner un fichier ou dossier @Echo off FOR /F "Tokens=4" %%a IN (?"C:\Program Files\Microsoft Security Client\AntiMal Echo. if "%THREAT%"=="no" ( color 2F Echo Aucun virus? Tout est propre ) ELSE ( color 4F Echo ATTENTION! Virus present! ) Echo.pause GPO Voir ces deux articles : http://www.grouppolicy.biz/2010/09/group-policy-for-microsoft-security-e... [3] http://fabienduchene.blogspot.com/2010/01/administrative-template-for-mi... [4] avec le fichier "microsoft_security_essentials.adm" du 11 janv.2010 : CLASS MACHINE CATEGORY!!SecurityEssentials POLICY!!TurnOffVirusProtection KEYNAME "Software\Microsoft\Microsoft Antimalware"
EXPLAIN!!TurnOffVirusProtection_Help VALUENAME "DisableAntiVirus" POLICY!!TurnOffSpywareProtection KEYNAME "Software\Microsoft\Microsoft Antimalware" EXPLAIN!!TurnOffSpywareProtection_Help VALUENAME "DisableAntiSpyware" CATEGORY!!RealTimeProtection POLICY!!DisableRealTimeMonitoring KEYNAME "Software\Microsoft\Microsoft Antimalware\Real-Time Pr EXPLAIN!!DisableRealTimeMonitoring_Help VALUENAME "DisableRealTimeMonitoring" VALUEON NUMERIC 0 VALUEOFF NUMERIC 1 POLICY!!DisableOnAccessProtection KEYNAME "Software\Microsoft\Microsoft Antimalware\Real-Time Pr EXPLAIN!!DisableOnAccessProtection_Help VALUENAME "DisableOnAccessProtection" VALUEON NUMERIC 0 VALUEOFF NUMERIC 1 POLICY!!DisableIOAVProtection KEYNAME "Software\Microsoft\Microsoft Antimalware\Real-Time Pr EXPLAIN!!DisableIOAVProtection_Help VALUENAME "DisableIOAVProtection" VALUEON NUMERIC 0 VALUEOFF NUMERIC 1 END CATEGORY ;;
CATEGORY!!SpyNet POLICY!!SpyNetMembership KEYNAME "Software\Microsoft\Microsoft Antimalware\SpyNet" EXPLAIN!!SpyNetMembership_Help Part!!SpyNetReportType DROPDOWNLIST NOSORT REQUIRED VALUENAME "SpyNetReporting" NAME!!SpyNetReportType0 VALUE NUMERIC 0 DEFAULT NAME!!SpyNetReportType1 VALUE NUMERIC 1 NAME!!SpyNetReportType2 VALUE NUMERIC 2 END END CATEGORY ;; CATEGORY!!Privacy POLICY!!PrivacyMode KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\UX Configura EXPLAIN!!DisablePrivacyMode_Help VALUENAME "DisablePrivacyMode" END CATEGORY ;; CATEGORY!!Scan POLICY!!CheckForSignaturesBeforeScan EXPLAIN!!CheckForSignaturesBeforeScan_Help VALUENAME "CheckForSignaturesBeforeRunningScan" POLICY!!DisableCatchupQuickScan EXPLAIN!!DisableCatchupQuickScan_Help VALUENAME "DisableCatchupQuickScan"
POLICY!!DisableCatchupFullScan EXPLAIN!!DisableCatchupFullScan_Help VALUENAME "DisableCatchupFullScan" POLICY!!AllowPause EXPLAIN!!AllowPause_Help VALUENAME "AllowPause" POLICY!!EnableRemovableDriveScanning EXPLAIN!!EnableRemovableDriveScanning_Help VALUENAME "DisableRemovableDriveScanning" VALUEON NUMERIC 0 VALUEOFF NUMERIC 1 POLICY!!DisableArchiveScanning EXPLAIN!!DisableArchiveScanning_Help VALUENAME "DisableArchiveScanning" POLICY!!DisableRestorePoint
EXPLAIN!!DisableRestorePoint_Help VALUENAME "DisableRestorePoint" POLICY!!AvgCPULoadFactor EXPLAIN!!AvgCPULoadFactor_Help Part!!AvgCPULoadFactor_ShortDesc NUMERIC REQUIRED VALUENAME "AvgCPULoadFactor" MIN 1 MAX 100 DEFAULT 50 POLICY!!DoScheduledScan EXPLAIN!!DoScheduledScan_Help Part!!DoScheduledScanDay DROPDOWNLIST NOSORT REQUIRED VALUENAME "ScheduleDay" NAME!!DoScheduledScanDay_TurnOff VALUE NUMERIC 8 NAME!!DoScheduledScanDay_Daily VALUE NUMERIC 0 NAME!!DoScheduledScanDay_Sunday VALUE NUMERIC 1 NAME!!DoScheduledScanDay_Monday VALUE NUMERIC 2 NAME!!DoScheduledScanDay_Tuesday VALUE NUMERIC 3 NAME!!DoScheduledScanDay_Wednesday VALUE NUMERIC 4 NAME!!DoScheduledScanDay_Thursday VALUE NUMERIC 5 NAME!!DoScheduledScanDay_Friday VALUE NUMERIC 6 NAME!!DoScheduledScanDay_Saturday VALUE NUMERIC 7 END Part!!DoScheduledScanTime DROPDOWNLIST NOSORT REQUIRED VALUENAME "ScheduleTime" NAME!!DoScheduledScanTime0 VALUE NUMERIC 0 NAME!!DoScheduledScanTime1 VALUE NUMERIC 60 NAME!!DoScheduledScanTime2 VALUE NUMERIC 120 NAME!!DoScheduledScanTime3 VALUE NUMERIC 180 DEFAUL NAME!!DoScheduledScanTime4 VALUE NUMERIC 240 NAME!!DoScheduledScanTime5 VALUE NUMERIC 300 NAME!!DoScheduledScanTime6 VALUE NUMERIC 360 NAME!!DoScheduledScanTime7 VALUE NUMERIC 420 NAME!!DoScheduledScanTime8 VALUE NUMERIC 480 NAME!!DoScheduledScanTime9 VALUE NUMERIC 540 NAME!!DoScheduledScanTime10 VALUE NUMERIC 600 NAME!!DoScheduledScanTime11 VALUE NUMERIC 660
NAME!!DoScheduledScanTime12 VALUE NUMERIC 720 NAME!!DoScheduledScanTime13 VALUE NUMERIC 780 NAME!!DoScheduledScanTime14 VALUE NUMERIC 840 NAME!!DoScheduledScanTime15 VALUE NUMERIC 900 NAME!!DoScheduledScanTime16 VALUE NUMERIC 960 NAME!!DoScheduledScanTime17 VALUE NUMERIC 1020 NAME!!DoScheduledScanTime18 VALUE NUMERIC 1080 NAME!!DoScheduledScanTime19 VALUE NUMERIC 1140 NAME!!DoScheduledScanTime20 VALUE NUMERIC 1200 NAME!!DoScheduledScanTime21 VALUE NUMERIC 1260 NAME!!DoScheduledScanTime22 VALUE NUMERIC 1320 NAME!!DoScheduledScanTime23 VALUE NUMERIC 1380 END Part!!DoScheduledScanType DROPDOWNLIST REQUIRED VALUENAME "ScanParameters" NAME!!DoScheduledScanType1 VALUE NUMERIC 1 NAME!!DoScheduledScanType2 VALUE NUMERIC 2 DEFAULT END PART!!ScanOnlyIfIdle CHECKBOX DEFCHECKED VALUENAME "ScanOnlyIfIdle" END CATEGORY ;; CATEGORY!!Updates POLICY!!UpdateInterval KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Signature Up EXPLAIN!!UpdateInterval_Help Part!!SetUpdateInterval DROPDOWNLIST NOSORT REQUIRED VALUENAME "SignatureUpdateInterval" NAME!!SetUpdateInterval0 VALUE NUMERIC 0 NAME!!SetUpdateInterval1 VALUE NUMERIC 1 NAME!!SetUpdateInterval2 VALUE NUMERIC 2 NAME!!SetUpdateInterval3 VALUE NUMERIC 3 NAME!!SetUpdateInterval4 VALUE NUMERIC 4 NAME!!SetUpdateInterval5 VALUE NUMERIC 5 NAME!!SetUpdateInterval6 VALUE NUMERIC 6 DEFAULT NAME!!SetUpdateInterval7 VALUE NUMERIC 7 NAME!!SetUpdateInterval8 VALUE NUMERIC 8 NAME!!SetUpdateInterval9 VALUE NUMERIC 9 NAME!!SetUpdateInterval10 VALUE NUMERIC 10 NAME!!SetUpdateInterval11 VALUE NUMERIC 11 NAME!!SetUpdateInterval12 VALUE NUMERIC 12 NAME!!SetUpdateInterval13 VALUE NUMERIC 13 NAME!!SetUpdateInterval14 VALUE NUMERIC 14 NAME!!SetUpdateInterval15 VALUE NUMERIC 15 NAME!!SetUpdateInterval16 VALUE NUMERIC 16 NAME!!SetUpdateInterval17 VALUE NUMERIC 17 NAME!!SetUpdateInterval18 VALUE NUMERIC 18
NAME!!SetUpdateInterval19 VALUE NUMERIC 19 NAME!!SetUpdateInterval20 VALUE NUMERIC 20 NAME!!SetUpdateInterval21 VALUE NUMERIC 21 NAME!!SetUpdateInterval22 VALUE NUMERIC 22 NAME!!SetUpdateInterval23 VALUE NUMERIC 23 NAME!!SetUpdateInterval24 VALUE NUMERIC 24 END Part!!UseMicrosoftUpdateSite CHECKBOX DEFCHECKED VALUENAME "ForceUpdateFromMU" POLICY!!ScheduleUpdates KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Signature Up EXPLAIN!!ScheduleUpdates_Help Part!!ScheduleUpdatesDay DROPDOWNLIST NOSORT REQUIRED VALUENAME "ScheduleDay" NAME!!DoScheduledScanDay_TurnOff VALUE NUMERIC 8 NAME!!DoScheduledScanDay_Daily VALUE NUMERIC 0 NAME!!DoScheduledScanDay_Sunday VALUE NUMERIC 1 NAME!!DoScheduledScanDay_Monday VALUE NUMERIC 2 NAME!!DoScheduledScanDay_Tuesday VALUE NUMERIC 3 NAME!!DoScheduledScanDay_Wednesday VALUE NUMERIC 4 NAME!!DoScheduledScanDay_Thursday VALUE NUMERIC 5 NAME!!DoScheduledScanDay_Friday VALUE NUMERIC 6 NAME!!DoScheduledScanDay_Saturday VALUE NUMERIC 7 END Part!!ScheduleUpdatesTime DROPDOWNLIST NOSORT REQUIRED VALUENAME "ScheduleTime" NAME!!DoScheduledScanTime0 VALUE NUMERIC 0 NAME!!DoScheduledScanTime1 VALUE NUMERIC 60 NAME!!DoScheduledScanTime2 VALUE NUMERIC 120 NAME!!DoScheduledScanTime3 VALUE NUMERIC 180 DEFAUL NAME!!DoScheduledScanTime4 VALUE NUMERIC 240 NAME!!DoScheduledScanTime5 VALUE NUMERIC 300 NAME!!DoScheduledScanTime6 VALUE NUMERIC 360 NAME!!DoScheduledScanTime7 VALUE NUMERIC 420 NAME!!DoScheduledScanTime8 VALUE NUMERIC 480 NAME!!DoScheduledScanTime9 VALUE NUMERIC 540 NAME!!DoScheduledScanTime10 VALUE NUMERIC 600 NAME!!DoScheduledScanTime11 VALUE NUMERIC 660 NAME!!DoScheduledScanTime12 VALUE NUMERIC 720 NAME!!DoScheduledScanTime13 VALUE NUMERIC 780 NAME!!DoScheduledScanTime14 VALUE NUMERIC 840 NAME!!DoScheduledScanTime15 VALUE NUMERIC 900 NAME!!DoScheduledScanTime16 VALUE NUMERIC 960 NAME!!DoScheduledScanTime17 VALUE NUMERIC 1020 NAME!!DoScheduledScanTime18 VALUE NUMERIC 1080 NAME!!DoScheduledScanTime19 VALUE NUMERIC 1140 NAME!!DoScheduledScanTime20 VALUE NUMERIC 1200
NAME!!DoScheduledScanTime21 VALUE NUMERIC 1260 NAME!!DoScheduledScanTime22 VALUE NUMERIC 1320 NAME!!DoScheduledScanTime23 VALUE NUMERIC 1380 END END CATEGORY ;; CATEGORY!!DefaultActions POLICY!!DefaultActions KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Threats\Thre EXPLAIN!!DefaultActions_Help Part!!AlertLevelSevere DROPDOWNLIST NOSORT REQUIRED VALUENAME "5" NAME!!ActionRemove VALUE NUMERIC 3 DEFAULT NAME!!ActionQuarantine VALUE NUMERIC 2 END Part!!AlertLevelHigh DROPDOWNLIST NOSORT REQUIRED VALUENAME "4" NAME!!ActionRemove VALUE NUMERIC 3 DEFAULT NAME!!ActionQuarantine VALUE NUMERIC 2 END Part!!AlertLevelMedium DROPDOWNLIST NOSORT REQUIRED VALUENAME "2" NAME!!ActionRemove VALUE NUMERIC 3 NAME!!ActionQuarantine VALUE NUMERIC 2 DEFAULT NAME!!ActionAllow VALUE NUMERIC 6 END Part!!AlertLevelLow DROPDOWNLIST NOSORT REQUIRED VALUENAME "1" NAME!!ActionRemove VALUE NUMERIC 3 NAME!!ActionQuarantine VALUE NUMERIC 2 DEFAULT NAME!!ActionAllow VALUE NUMERIC 6 END POLICY!!ApplyRecommendedActions KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware" EXPLAIN!!ApplyRecommendedActions_Help
END CATEGORY VALUENAME "DisableRoutinelyTakingAction" VALUEON NUMERIC 0 VALUEOFF NUMERIC 1 CATEGORY!!Exclusions POLICY!!ExcludedFileTypes KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Exclusions\E EXPLAIN!!ExcludedFileTypes_Help Part!!ExcludedFileTypes LISTBOX ADDITIVE POLICY!!ExcludedPaths KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Exclusions\P EXPLAIN!!ExcludedPaths_Help Part!!ExcludedPaths LISTBOX ADDITIVE POLICY!!ExcludedProcesses KEYNAME "SOFTWARE\Microsoft\Microsoft Antimalware\Exclusions\P EXPLAIN!!ExcludedProcesses Part!!ExcludedProcesses LISTBOX ADDITIVE END CATEGORY ;; END CATEGORY ;; MSE [strings] SecurityEssentials="Security Essentials" SUPPORTED_WindowXPSP3="At least Windows XP Professional with SP3" CheckForSignaturesBeforeScan="Update definitions before running a scan" CheckForSignaturesBeforeScan_Help="If this setting is enabled, Security Essent DisableCatchupQuickScan="Disable catchup quick scan" DisableCatchupQuickScan_Help="If this option is enabled, any missed quick scan DisableCatchupFullScan="Disable catchup full scan" DisableCatchupFullScan_Help="If this option is enabled, any missed full scan w AllowPause="Allow end-user to pause the scan" AllowPause_Help="If this setting is enabled, the scan could be paused by end-u EnableRemovableDriveScanning="Enable scanning of removable drives" EnableRemovableDriveScanning_Help="If this option is enabled, MSE will scan re AvgCPULoadFactor="Average CPU load"
AvgCPULoadFactor_Help="Configure the average CPU load to be used (range from 1 AvgCPULoadFactor_ShortDesc="Average CPU load (1 to 100%)" TurnOffSpywareProtection="Turn off spyware protection." TurnOffSpywareProtection_Help="If Enabled this setting TURNS OFF Security Esse TurnOffVirusProtection="Turn off virus protection." TurnOffVirusProtection_Help="If Enabled this setting TURNS OFF Security Essent Scan="Scan" Updates="Updates" SpyNet="SpyNet" SpyNetMembership="SpyNet Membership" SpyNetMembership_Type="Membership type" SpyNetMembership_Help="If Enabled allows you to set one of three possible stat SpyNetReportType="Select the level of SpyNet reporting:" SpyNetReportType0="No SpyNet Reporting" SpyNetReportType1="Basic SpyNet Reporting" SpyNetReportType2="Advanced SpyNet Reporting" Privacy="Privacy" PrivacyMode="Allow all users to view the history full results" DisablePrivacyMode_Help="If this setting is enabled, all users - including non DoScheduledScan="Configure scheduled scans." DoScheduledScan_Help="If Enabled allows you to set the day and time of schedul DoScheduledScanDay="Scheduled scan day:" DoScheduledScanDay_Daily="Daily" DoScheduledScanDay_Sunday="Sunday" DoScheduledScanDay_Monday="Monday" DoScheduledScanDay_Tuesday="Tuesday" DoScheduledScanDay_Wednesday="Wednesday" DoScheduledScanDay_Thursday="Thursday" DoScheduledScanDay_Friday="Friday" DoScheduledScanDay_Saturday="Saturday" DoScheduledScanDay_TurnOff="Turn off scheduled scans" DoScheduledScanTime="Scheduled scan time:" DoScheduledScanTime0="12:00 AM" DoScheduledScanTime1=" 1:00 AM" DoScheduledScanTime2=" 2:00 AM" DoScheduledScanTime3=" 3:00 AM" DoScheduledScanTime4=" 4:00 AM" DoScheduledScanTime5=" 5:00 AM" DoScheduledScanTime6=" 6:00 AM" DoScheduledScanTime7=" 7:00 AM" DoScheduledScanTime8=" 8:00 AM" DoScheduledScanTime9=" 9:00 AM" DoScheduledScanTime10="10:00 AM" DoScheduledScanTime11="11:00 AM" DoScheduledScanTime12="12:00 PM" DoScheduledScanTime13=" 1:00 PM" DoScheduledScanTime14=" 2:00 PM" DoScheduledScanTime15=" 3:00 PM" DoScheduledScanTime16=" 4:00 PM" DoScheduledScanTime17=" 5:00 PM" DoScheduledScanTime18=" 6:00 PM" DoScheduledScanTime19=" 7:00 PM" DoScheduledScanTime20=" 8:00 PM" DoScheduledScanTime21=" 9:00 PM" DoScheduledScanTime22="10:00 PM" DoScheduledScanTime23="11:00 PM" DoScheduledScanType="Scheduled scan type:" DoScheduledScanType1="Quick scan" DoScheduledScanType2="Full scan" ScanOnlyIfIdle="Start the scheduled scan only when my computer is not in use" DisableRestorePoint="Turn off MSE initiated system restore points."
DisableRestorePoint_Help="If Enabled this setting configures Security Essentia DisableArchiveScanning="Turn off scanning of archive files." DisableArchiveScanning_Help="If Enabled this setting specifies that Security E RealTimeProtection="Real-Time protection" DisableRealTimeMonitoring="Enable real-time monitoring" DisableRealTimeMonitoring_Help="If this policy is disabled, the other two sett DisableOnAccessProtection="Monitor file and program activity on the computer" DisableOnAccessProtection_Help="If this setting is enabled, MSE will check for DisableIOAVProtection="Scan all downloaded files and attachments" DisableIOAVProtection_Help="If this setting is enabled, MSE will check for mal SetUpdateInterval="Check for updates every:" SetUpdateInterval0="Turn Off Update Interval" SetUpdateInterval1="1 hour" SetUpdateInterval2="2 hours" SetUpdateInterval3="3 hours" SetUpdateInterval4="4 hours" SetUpdateInterval5="5 hours" SetUpdateInterval6="6 hours" SetUpdateInterval7="7 hours" SetUpdateInterval8="8 hours" SetUpdateInterval9="9 hours" SetUpdateInterval10="10 hours" SetUpdateInterval11="11 hours" SetUpdateInterval12="12 hours" SetUpdateInterval13="13 hours" SetUpdateInterval14="14 hours" SetUpdateInterval15="15 hours" SetUpdateInterval16="16 hours" SetUpdateInterval17="17 hours" SetUpdateInterval18="18 hours" SetUpdateInterval19="19 hours" SetUpdateInterval20="20 hours" SetUpdateInterval21="21 hours" SetUpdateInterval22="22 hours" SetUpdateInterval23="23 hours" SetUpdateInterval24="24 hours" UpdateInterval="Configure signature update interval." UpdateInterval_Help="If Enabled allows you to set the frequency of checking fo UseMicrosoftUpdateSite="Only use Microsoft Update for updating definitions." ScheduleUpdates="Schedule updates" ScheduleUpdates_Help="If Enabled allows you to set the day and time of schedul ScheduleUpdatesDay="Schedule update day:" ScheduleUpdatesTime="Schedule update time:" DefaultActions="Default actions" DefaultActions_Help="Choose the action to display or apply by default when Mic AlertLevelSevere="Severe alert level" AlertLevelHigh="High alert level" AlertLevelMedium="Medium alert level" AlertLevelLow="Low alert level" ActionRemove="Remove" ActionQuarantine="Quarantine" ActionAllow="Allow" ApplyRecommendedActions="Automatically apply default actions" ApplyRecommendedActions_Help="If this setting is enabled, all the defined defa Exclusions="Exclusions" ExcludedFileTypes="Excluded file types" ExcludedFileTypes_Help="When MSE will perform a scan or use real-time protecti ExcludedPaths="Excluded files & locations" ExcludedPaths_Help="When MSE will perform a scan or use real-time protection, ExcludedProcesses="Excluded processes" ExcludedProcesses_Help="When MSE will perform a scan or use real-time protecti
Services Gérer le service de MSE echo Arrêt de Microsoft Security Essentials net stop mpssvc echo Démarrage de Microsoft Security Essentialsnet start MsMpSvc Mises à jours des définitions anti-virales Manuellement Les mises à jours antivirale de MSE et son Changelog peuvent être consultés ici : http://www.microsoft.com/security/portal/definitions/adl.aspx [5] Automatiquement MSE est reglé par défaut pour vérifier les mises à jours tous les 24h et 10 minutes après le redémarrage d'un poste client. L'anti-virus va vérifier si une connexion date de plus de 24 heures. Si cette condition est vraie, la mise à jour s'effectue. Gros point négatif à ce système : les mises à jours journalières de MSE peuvent passer innaperçus. Un autre problème est que MSE considère une base de donnée antivirale dépassée au bout de 7 jours. Pour une mise à jour automatique il faut vérifier que les services suivants s'exécutent : Automatic Updates service (wuauserv) Background Intelligent Transfer Service (BITS) Base de registres L'intervalle de mise à jour peut être modifié par une modification dans la base de registres (regedit) : HKEY_LOCAL_MACHINE/SOFTWARE/MICROSOFT/Microsoft Antimalware/Signature Updates Il faut modifier la clé SignatureUpdateIntervalavec un chiffre entre 1 et 24 (Décimal), puis redémarrer le PC. Note: il faut que votre utilisateur possède les droits de modifications sur la clé "Signature Updates"! De plus un programme ou une mise à jour peut changer cette clé sans vous prévenir. Tâche planifiée La tâche planifiée peut être une solution préférable. Il suffit de créer une tâche planifiée périodique lançant "%ProgramFiles%\Microsoft Security Essentials\MpCmdRun.exe" -SignatureUpdate Avec l'utilisateur : Sous Windows XP : NT AUTHORITY\SYSTEM (ou Système). Sous Windows 7 : AUTORITE NT\Système.
Logs Où si le poste est mono-utilisateur, avec le compte de celui-ci. Avec la commande : "%ProgramFiles%\Microsoft Security Essentials\MpCmdRun.exe" -GetFiles de nombreux fichiers logs vont être compressés en.cab, fichiers que vous pourrez consulter par la suite. Exemple : C:\> "%ProgramFiles%\Microsoft Security Essentials\MpCmdRun.exe" -GetFiles Collecting events from System Event Log... Collecting configuration information... Getting Windows Update log... Getting MpCmdRun log (1/3)... Getting MpCmdRun log (2/3)... Getting MpCmdRun log (3/3)... Getting RTSD/SDN blobs... Getting MpSigStub log... Getting product service(s) registration information... Getting product service registration information... Getting minifilter driver registration information... Getting system information... Creating CAB file... Files successfully created in C:\Documents and Settings\All Users\Application Microsoft Antimalware\Support\MpSupportFiles.cab Mise à niveau Pour évoluer d'une version majeure à une autre pour MSE, il faut lancer Update.exe présent dans %ProgramFiles%\Microsoft Security Essentials\ Tags: GPO [6] Scripts [7] Antivirus [8] Visitez notre site web : WindowsLinux.net - Wiki et partage d'informations sur Windows et Linux. URL source (Obtenu le 08/05/2018-11:11): http://www.windowslinux.net/microsoft-security-essentials Liens: [1] http://www.windowslinux.net/microsoft-security-essentials [2] http://windows.microsoft.com/fr-fr/windows/products/security-essentials [3] http://www.grouppolicy.biz/2010/09/group-policy-for-microsoft-security-essentials/ [4] http://fabienduchene.blogspot.com/2010/01/administrative-template-for-microsoft.html [5] http://www.microsoft.com/security/portal/definitions/adl.aspx [6] http://www.windowslinux.net/tags/gpo [7] http://www.windowslinux.net/tags/scripts [8] http://www.windowslinux.net/tags/antivirus