Dear Checkmates,
After successfully deploying the endpoint client on my Windows server machine, I am unable to update the DAT signature from the local endpoint server.
Error Message : Anti-Malware unable to update. No connection to the server.
Initial troubleshooting steps followed:
>Checked connectivity to the endpoint server :: OK
>Tried updating the Anti-malware database from the endpoint server :: OK
Please find the below ERROR logs collected from the client.
EiKav [error] KAV engine isn't initialized [AMEngine::Kav::KavProtectionEngine::ChangeSettings]
2024-02-09 11:31:24.210 t:2532 epam [error] Error applying new engine settings [AntiMalware::Protection::ProtectionController::HandleNotifyGeneralBladeSettings]
2024-02-09 11:31:24.210 t:2532 epam [info ] There is reload request, checking for running scans... [AntiMalware::Protection::ProtectionController::ControlAVEngine]
2024-02-09 11:31:24.210 t:3080 EiKav [info ] Loading Kav library from: 'C:\Program Files (x86)\CheckPoint\Endpoint Security\Anti-Malware\Avsys' [AMEngine::Kav::KavProtectionEngine::LoadAvLibraryInternal]
2024-02-09 11:31:24.215 t:3080 EiKav [info ] kaveLoad success [AMEngine::Kav::KavProtectionEngine::LoadAvLibraryInternal]
2024-02-09 11:31:24.215 t:3080 epam [info ] AV Library checkpoint.E1 is loaded [AMEngine::ProtectionEnginePrototype::Initialize]
2024-02-09 11:31:24.215 t:3080 EiKav [info ] Set KAV Engine log level to 0 [AMEngine::Kav::KavLogManager::SetLevel]
2024-02-09 11:31:24.218 t:3080 EiKav [info ] AV Library Initializing ScannerHostType 896, cloud protection is enabled, Bases Path : 'C:\ProgramData\CheckPoint\Endpoint Security\Anti-Malware\bases\8_10_0'; Temp Path : 'C:\ProgramData\CheckPoint\Endpoint Security\Anti-Malware\temp'; License Path : 'C:\Program Files (x86)\CheckPoint\Endpoint Security\Anti-Malware\Avsys\license'; Quarantine path : 'C:\ProgramData\CheckPoint\Endpoint Security\Anti-Malware\quarantine' [AMEngine::Kav::KavProtectionEngine::InitializeKavEngine]
2024-02-09 11:31:24.219 t:3080 EiKav [info ] kaveSetSettings() success [AMEngine::Kav::KavProtectionEngine::InitializeKavEngine]
2024-02-09 11:31:24.223 t:2544 epam [info ] Engine status reported as NOT initialized, version info is reset [AntiMalware::EpamDafDaAdaptor::DafDaProxy::HandleEngineStatus]
2024-02-09 11:31:24.223 t:2544 epam [info ] Engine status reported as NOT initialized, version info is reset [AntiMalware::EpamDafDaAdaptor::DafDaProxy::HandleEngineStatus]
2024-02-09 11:31:24.223 t:2544 epam [info ] Engine status reported as NOT initialized, version info is reset [AntiMalware::EpamDafDaAdaptor::DafDaProxy::HandleEngineStatus]
2024-02-09 11:31:24.224 t:3036 epam [error] Failed to update Engine status with 'ENGINE_INITIALIZING(1)', HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleEngineStatus]
2024-02-09 11:31:24.226 t:3036 epam [error] Failed to update Engine status with 'ENGINE_INITIALIZING(1)', HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleEngineStatus]
2024-02-09 11:31:24.227 t:3036 epam [error] Failed to update Engine status with 'ENGINE_INITIALIZING(1)', HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleEngineStatus]
2024-02-09 11:31:24.230 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.260 t:812 epam [info ] Add default media encryption [AntiMalware::SettingsStore::SettingsStore::AddDefaultInternal]
2024-02-09 11:31:24.264 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.265 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.266 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.267 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.271 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.272 t:3036 epam [error] SendZDxItemUpdate(dwMapCookie, ZDX_SINK_TRAY, ZDX_EPAM_SERVICE, FALSE) failed, HRESULT == 0x8000000a [AntiMalware::Adaptors::EpamUiProxy::HandleNotifySystemTaskStatus]
2024-02-09 11:31:24.289 t:2532 EiKav [info ] Engine version: 8.10.0.511 [AMEngine::Kav::KavProtectionEngine::GetVersionInternal]
2024-02-09 11:31:24.289 t:812 epam [info ] Add default Rescan Quarantine [AntiMalware::SettingsStore::SettingsStore::AddDefaultRescanQuarantine]
2024-02-09 11:31:24.291 t:3036 epam [info ] UI updated with KEY_ENGINE_VERSION = '8.10.0.511' and KEY_SIG_VERSION = '' [AntiMalware::Adaptors::EpamUiProxy::HandleEngineVersion]
2024-02-09 11:31:24.291 t:2284 epam [info ] EventMonitor updated with KEY_ENGINE_VERSION = '8.10.0.511' and KEY_SIG_VERSION = '' [AntiMalware::Protection::EventMonitor::HandleNotifyEngineVersionMsg]
2024-02-09 11:31:24.483 t:812 epam [info ] Calculate internal scan settings [AntiMalware::SettingsStore::SettingsStore::CalculateInternalScanSettings]
+PFA for more details.
Can anyone help me in providing insights to this problem I am facing.
Thanks in advance.
***********
Regards,
@SayoojDinan