<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://community.sophos.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/"><channel><title>Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/on-premise-endpoint/f/sophos-endpoint-software/127312/problem-on-reinstalling-antivirus-on-computer</link><description>I&amp;#39;ve a problem with a computer (win2016) on which I deleted all sophos components + reboot and reinstall from the share of the new server. 
 All components are well download from the server, but impossible that antivirus part install. 
 
 I&amp;#39;ve tested</description><dc:language>en-US</dc:language><generator>Telligent Community 12</generator><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466380?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 15:12:54 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:a13fc217-7d0d-4231-9309-bf3eaffc6322</guid><dc:creator>daunay olivier</dc:creator><description>&lt;div&gt;
&lt;div style="color:#5f6368;font-size:12px;"&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;I continued on the certificate trail and found a difference in local security policies&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div style="color:#5f6368;font-size:12px;"&gt;&lt;span&gt;&amp;nbsp;&lt;/span&gt;&lt;/div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;div&gt;
&lt;div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;OK by modifying local security strategies&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;Computer configuration / Windows settings / Security settings / public key policy&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;in the &amp;quot;Store&amp;quot; tab: modification of &amp;quot;Main certificate stores&amp;quot;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;check the box next to &amp;quot;Third-party and enterprise root certification authorities (recommended)&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;and it works !!&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span&gt;&lt;span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span lang="en"&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;span style="color:#000000;float:none;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;"&gt;the misconfiguration was &amp;quot;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;only enterprise root certification authorities&amp;quot;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;span style="color:#000000;float:none;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;div style="color:#000000;font-size:18px;"&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;&lt;span style="color:#000000;float:none;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;"&gt;&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;thanks a lot for your help&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/div&gt;
&lt;/div&gt;
&lt;/div&gt;
&lt;p&gt;&lt;span style="color:#000000;float:none;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;"&gt;&amp;nbsp;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466377?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 14:49:01 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:34a4dbd6-cdc5-4279-a927-1bfa14716ed7</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello Olivier,&lt;/p&gt;
&lt;p&gt;I think it&amp;#39;s this one:&lt;/p&gt;
&lt;p&gt;&lt;code&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Public Primary Certification Authority - G5&lt;/code&gt;&lt;br /&gt;&lt;code&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Class 3 Public Primary Certification Authority&lt;/code&gt;&lt;br /&gt;&lt;code&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Mon Nov 08 01:59:59 2021&lt;/code&gt;&lt;br /&gt;&lt;code&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 32F30882622B87CF8856C63DB873DF0853B4DD27&lt;/code&gt;&lt;/p&gt;
&lt;p&gt;whereas the good one is:&lt;/p&gt;
&lt;p&gt;&lt;span style="font-family:courier new, courier;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Thu Jul 17 01:59:59 2036&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;The (newer) Verisign Class 3 Public Primary should be under Trusted Root in &lt;span style="font-family:courier new, courier;"&gt;certmgr.msc &lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;Christian&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466371?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 14:19:46 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:d0784a44-8940-401e-b723-9473ee883d7c</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;&lt;span style="color:#000000;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;" lang="en"&gt;&lt;span&gt;&lt;span&gt;indeed, &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="color:#000000;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;" lang="en"&gt;&lt;span&gt;&lt;span&gt;there is an error that I cannot find on a functional installation&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;&lt;br /&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt;&lt;span&gt;do you have an idea ?&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span style="color:#000000;float:none;font-family:Roboto, RobotoDraft, Helvetica, Arial, sans-serif;font-size:18px;font-style:normal;font-weight:400;text-indent:0px;"&gt; &lt;/span&gt;&lt;/p&gt;
&lt;p&gt;Verifying: swi_callout.cat&lt;/p&gt;
&lt;p&gt;Signature Index: 0 (Primary Signature)&lt;br /&gt;Hash of file (sha1): 603B1674E37B3E0B23F71C32D5CFDF32E2195DE9&lt;/p&gt;
&lt;p&gt;Signing Certificate Chain:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Sat Nov 01 15:54:03 2025&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 8FBE4D070EF8AB1BCCAF2A9D5CCAE7282A2C66B3&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Class 3 Public Primary Certification Authority&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Mon May 23 19:11:29 2016&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 58455389CF1D0CD6A08E3CE216F65ADFF7A86408&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Class 3 Public Primary Certification Authority&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Mon Nov 08 01:59:59 2021&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 32F30882622B87CF8856C63DB873DF0853B4DD27&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Sat Feb 08 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 495847A93187CFB8C71F840CB7B41497AD95C64F&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Sophos Limited&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Fri Dec 23 01:59:59 2016&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: EC510F6AEFCC5EC44CFD4C7D4A1079BA71CC45E4&lt;/p&gt;
&lt;p&gt;The signature is timestamped: Fri May 20 11:18:30 2016&lt;br /&gt;Timestamp Verified by:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Fri Jan 01 01:59:59 2021&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: BE36A4562FB2EE05DBB3D32323ADF445084ED656&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Symantec Time Stamping Services CA - G2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Thu Dec 31 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 6C07453FFDDA08B83707C09B82FB3D15F35336B1&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Symantec Time Stamping Services Signer - G4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Symantec Time Stamping Services CA - G2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Wed Dec 30 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 65439929B67973EB192D6FF243E6767ADF0834E4&lt;/p&gt;
&lt;p&gt;SignTool Error: A certificate chain processed, but terminated in a root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; certificate which is not trusted by the trust provider.&lt;/p&gt;
&lt;p&gt;Number of files successfully Verified: 0&lt;br /&gt;Number of warnings: 0&lt;br /&gt;Number of errors: 5&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;with a good computer:&lt;/p&gt;
&lt;p&gt;Verifying: swi_callout.cat&lt;/p&gt;
&lt;p&gt;Signature Index: 0 (Primary Signature)&lt;br /&gt;Hash of file (sha1): 603B1674E37B3E0B23F71C32D5CFDF32E2195DE9&lt;/p&gt;
&lt;p&gt;Signing Certificate Chain:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Thu Jul 17 01:59:59 2036&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Sat Feb 08 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 495847A93187CFB8C71F840CB7B41497AD95C64F&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Sophos Limited&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Fri Dec 23 01:59:59 2016&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: EC510F6AEFCC5EC44CFD4C7D4A1079BA71CC45E4&lt;/p&gt;
&lt;p&gt;The signature is timestamped: Fri May 20 11:18:30 2016&lt;br /&gt;Timestamp Verified by:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Fri Jan 01 01:59:59 2021&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: BE36A4562FB2EE05DBB3D32323ADF445084ED656&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Symantec Time Stamping Services CA - G2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Thawte Timestamping CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Thu Dec 31 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 6C07453FFDDA08B83707C09B82FB3D15F35336B1&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Symantec Time Stamping Services Signer - G4&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Symantec Time Stamping Services CA - G2&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Wed Dec 30 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 65439929B67973EB192D6FF243E6767ADF0834E4&lt;/p&gt;
&lt;p&gt;Cross Certificate Chain:&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Sat Nov 01 15:54:03 2025&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 8FBE4D070EF8AB1BCCAF2A9D5CCAE7282A2C66B3&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Class 3 Public Primary Certification Authority&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Microsoft Code Verification Root&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Mon May 23 19:11:29 2016&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 58455389CF1D0CD6A08E3CE216F65ADFF7A86408&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: Class 3 Public Primary Certification Authority&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Mon Nov 08 01:59:59 2021&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 32F30882622B87CF8856C63DB873DF0853B4DD27&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Public Primary Certification Authority - G5&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Sat Feb 08 01:59:59 2020&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: 495847A93187CFB8C71F840CB7B41497AD95C64F&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued to: Sophos Limited&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Issued by: VeriSign Class 3 Code Signing 2010 CA&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Expires:&amp;nbsp;&amp;nbsp; Fri Dec 23 01:59:59 2016&lt;br /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; SHA1 hash: EC510F6AEFCC5EC44CFD4C7D4A1079BA71CC45E4&lt;/p&gt;
&lt;p&gt;&lt;br /&gt;Successfully verified: swi_callout.cat&lt;/p&gt;
&lt;p&gt;Number of files successfully Verified: 1&lt;br /&gt;Number of warnings: 0&lt;br /&gt;Number of errors: 0&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466360?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 11:09:43 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:33f4991b-21fa-4d02-91ff-ca5eb8d2e7b5</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello Olivier,&lt;/p&gt;
&lt;p&gt;this is somewhat strange considering that it works on all other machines. &lt;br /&gt;I don&amp;#39;t think that&amp;nbsp;&lt;span style="font-family:courier new, courier;"&gt;swi_di.exe&lt;/span&gt; (that should install the driver) can spit out more information than it already does, namely saying&amp;nbsp;&lt;em&gt;The driver package is not signed&lt;/em&gt;,&lt;/p&gt;
&lt;p&gt;The only thing, apart from engaging Support, that comes to my mind is &lt;span style="font-family:courier new, courier;"&gt;signtool.exe verify /v /kp&lt;/span&gt; from the Windows SDK.&lt;/p&gt;
&lt;p&gt;Christian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466349?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 09:09:43 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:c809b7eb-17ce-4640-9498-4c99db52949f</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;hello Christian&lt;/p&gt;
&lt;p&gt;I checked the Digital Signatures of &lt;span style="font-family:courier new, courier;"&gt;swi_callout.sys&lt;/span&gt; and &lt;span style="font-family:courier new, courier;"&gt;swi_callout.cat&lt;/span&gt; in &lt;span style="font-family:courier new, courier;"&gt;%ProgramData%\Sophos\AutoUpdate\Cache\savxp\program files\Sophos\Sophos Anti-Virus\Web Intelligence\x64&lt;br /&gt;&lt;br /&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-family:courier new, courier;"&gt;I found no&amp;nbsp;difference between these and the sames on an other computer without the error&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-family:courier new, courier;"&gt;Olivier&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="font-family:courier new, courier;"&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466344?ContentTypeID=1</link><pubDate>Wed, 21 Apr 2021 08:12:24 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:f5d7b76f-ec11-4200-8baf-2f41dbf996f3</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello &lt;span&gt;daunay olivier&lt;/span&gt;,&lt;/p&gt;
&lt;p&gt;not sure this is actually the cause. I also don&amp;#39;t know if and where an associated Windows Event is recorded.&amp;nbsp; &lt;br /&gt;Even though the Program folder has been removed by the rollback you can check the Digital Signatures of &lt;span style="font-family:courier new, courier;"&gt;swi_callout.sys&lt;/span&gt; and &lt;span style="font-family:courier new, courier;"&gt;swi_callout.cat&lt;/span&gt; in &lt;span style="font-family:courier new, courier;"&gt;%ProgramData%\Sophos\AutoUpdate\Cache\savxp\program files\Sophos\Sophos Anti-Virus\Web Intelligence\x64&lt;/span&gt;. Note the &lt;em&gt;No signature was present in the subject&lt;/em&gt; for the &lt;span style="font-family:courier new, courier;"&gt;.cat&amp;#39;&lt;/span&gt;s sha256 signature is expected.&lt;/p&gt;
&lt;p&gt;Christian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466279?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 14:20:28 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:1ad73ac5-eab6-4f49-98c7-ab2eafad5539</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;Thanks &lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;it seems there is no&amp;nbsp;issue with the root certificates&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;I can acces correctly to the certificate with MMC&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;how can I verify if there is a certificate error&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466276?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 13:25:36 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:888b576e-3fbb-447b-ac2d-ba07678831d0</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello &lt;span&gt;daunay olivier&lt;/span&gt;,&lt;/p&gt;
&lt;p&gt;thanks.&lt;br /&gt;Installation of Web Intelligence (&lt;span style="font-family:courier new, courier;"&gt;SwiCalloutInstall&lt;/span&gt;) fails with: &lt;em&gt;&lt;span&gt;The driver package is not signed&lt;/span&gt;&lt;/em&gt;. &lt;br /&gt;Refers to the stuff in &lt;span style="font-family:courier new, courier;"&gt;%ProgramFiles(x86)%\Sophos\Sophos Anti-Virus\Web Intelligence\&lt;/span&gt;. AFAIK the message is issued by &lt;span style="font-family:courier new, courier;"&gt;swi-di.exe&lt;/span&gt;. Is it possible that the server has an issue with the root certificates?&lt;/p&gt;
&lt;p&gt;Christian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466274?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 13:04:31 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:f1b4ee82-af04-4454-9ef5-03456c0e603d</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;I found 2 &lt;span&gt;occurrences of &amp;quot;Valeur renvoy&amp;eacute;e 3&amp;quot;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;/p&gt;
&lt;p&gt;MSI (s) (18:D0) [14:21:15:079]: Executing op: ActionStart(Name=StartDriverServices,,)&lt;br /&gt;AddSIPSManagementUser Exit (283)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:079]: Executing op: CustomActionSchedule(Action=StartDriverServices,ActionType=1025,Source=BinaryData,Target=StartDriverServices,CustomActionData=WIN7_AMD64)&lt;br /&gt;MSI (s) (18:6C) [14:21:15:079]: Invoking remote custom action. DLL: C:\windows\Installer\MSI2E3D.tmp, Entrypoint: StartDriverServices&lt;br /&gt;MSI (s) (18:D0) [14:21:15:111]: Executing op: ActionStart(Name=SetThreatLifeTimeRegistryKeyPermissions,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:111]: Executing op: CustomActionSchedule(Action=SetThreatLifeTimeRegistryKeyPermissions,ActionType=1025,Source=BinaryData,Target=SetThreatLifeTimeRegistryKeyPermissions,)&lt;br /&gt;MSI (s) (18:BC) [14:21:15:111]: Invoking remote custom action. DLL: C:\windows\Installer\MSI2E5D.tmp, Entrypoint: SetThreatLifeTimeRegistryKeyPermissions&lt;br /&gt;MSI (s) (18:D0) [14:21:15:126]: Executing op: ActionStart(Name=SetupSspUserAccountRollback,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:126]: Executing op: CustomActionSchedule(Action=SetupSspUserAccountRollback,ActionType=1345,Source=BinaryData,Target=CleanUpSsspUserAccount,CustomActionData=NT SERVICE\SAVService)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:126]: Executing op: ActionStart(Name=SetupSspUserAccount,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:126]: Executing op: CustomActionSchedule(Action=SetupSspUserAccount,ActionType=1089,Source=BinaryData,Target=SetupSspUserAccount,CustomActionData=NT SERVICE\SAVService)&lt;br /&gt;MSI (s) (18:60) [14:21:15:126]: Invoking remote custom action. DLL: C:\windows\Installer\MSI2E6E.tmp, Entrypoint: SetupSspUserAccount&lt;br /&gt;SetupSspUserAccount: Initialized.&lt;br /&gt;SetupSspUserAccount: LoadAccount(SophosSSPUser) failed (error 1332)&lt;br /&gt;SetupSspUserAccount: Granting permissions to user &amp;quot;NT SERVICE\SAVService&amp;quot;&lt;br /&gt;MSI (s) (18:D0) [14:21:15:486]: Executing op: ActionStart(Name=SetServiceSecurity,,)&lt;br /&gt;SetupSspUserAccount: Service is not installed.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:486]: Executing op: CustomActionSchedule(Action=SetServiceSecurity,ActionType=1025,Source=BinaryData,Target=SetServiceSecurity,)&lt;br /&gt;MSI (s) (18:40) [14:21:15:486]: Invoking remote custom action. DLL: C:\windows\Installer\MSI2FD6.tmp, Entrypoint: SetServiceSecurity&lt;br /&gt;MSI (s) (18:D0) [14:21:15:501]: Executing op: ActionStart(Name=SetServiceRecoveryActions,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:501]: Executing op: CustomActionSchedule(Action=SetServiceRecoveryActions,ActionType=1025,Source=BinaryData,Target=SetServiceRecoveryActions,)&lt;br /&gt;MSI (s) (18:60) [14:21:15:501]: Invoking remote custom action. DLL: C:\windows\Installer\MSI2FE7.tmp, Entrypoint: SetServiceRecoveryActions&lt;br /&gt;MSI (s) (18:D0) [14:21:15:517]: Executing op: ActionStart(Name=RollbackInstallDeviceControl,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:517]: Executing op: CustomActionSchedule(Action=RollbackInstallDeviceControl,ActionType=1281,Source=BinaryData,Target=RollbackInstallDeviceControl,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:532]: Executing op: ActionStart(Name=InstallDeviceControl,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:532]: Executing op: CustomActionSchedule(Action=InstallDeviceControl,ActionType=1025,Source=BinaryData,Target=InstallDeviceControl,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\&amp;quot;&amp;quot;C:\ProgramData\Sophos\AutoUpdate\cache\savxp\&amp;quot;)&lt;br /&gt;MSI (s) (18:24) [14:21:15:532]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3007.tmp, Entrypoint: InstallDeviceControl&lt;br /&gt;MSI (s) (18:D0) [14:21:15:548]: Executing op: ActionStart(Name=SetAdminGroupDescription,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:548]: Executing op: CustomActionSchedule(Action=SetAdminGroupDescription,ActionType=1025,Source=BinaryData,Target=SetAdminGroupDescription,CustomActionData=Les SophosAdministrators peuvent ex&amp;eacute;cuter Sophos Anti-Virus avec un acc&amp;egrave;s total)&lt;br /&gt;MSI (s) (18:C8) [14:21:15:564]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3018.tmp, Entrypoint: SetAdminGroupDescription&lt;br /&gt;MSI (s) (18:D0) [14:21:15:579]: Executing op: ActionStart(Name=SetPowerGroupDescription,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:579]: Executing op: CustomActionSchedule(Action=SetPowerGroupDescription,ActionType=1025,Source=BinaryData,Target=SetPowerGroupDescription,CustomActionData=Les SophosPowerUsers peuvent ex&amp;eacute;cuter Sophos Anti-Virus avec le m&amp;ecirc;me acc&amp;egrave;s que les SophosUsers mais avec un acc&amp;egrave;s sup&amp;eacute;rieur au nettoyage)&lt;br /&gt;MSI (s) (18:E0) [14:21:15:579]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3038.tmp, Entrypoint: SetPowerGroupDescription&lt;br /&gt;MSI (s) (18:D0) [14:21:15:595]: Executing op: ActionStart(Name=SetUserGroupDescription,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:595]: Executing op: CustomActionSchedule(Action=SetUserGroupDescription,ActionType=1025,Source=BinaryData,Target=SetUserGroupDescription,CustomActionData=Les SophosUsers peuvent ex&amp;eacute;cuter Sophos Anti-Virus avec un acc&amp;egrave;s limit&amp;eacute; &amp;agrave; la configuration du contr&amp;ocirc;le et au nettoyage)&lt;br /&gt;MSI (s) (18:6C) [14:21:15:595]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3049.tmp, Entrypoint: SetUserGroupDescription&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Executing op: ActionStart(Name=MsiConfigureServices,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Executing op: ProgressTotal(Total=2,Type=1,ByteEquivalent=1300000)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Executing op: ServiceConfigure(,Name=SAVService,Event=5,ConfigType=5,Argument=1)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Changing configuration of service SAVService.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Changed configuration of service SAVService with ConfigType SERVICE_CONFIG_SERVICE_SID_INFO&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Done changing configuration of service SAVService&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Executing op: ServiceConfigure(,Name=SAVAdminService,Event=5,ConfigType=5,Argument=1)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Changing configuration of service SAVAdminService.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Changed configuration of service SAVAdminService with ConfigType SERVICE_CONFIG_SERVICE_SID_INFO&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Done changing configuration of service SAVAdminService&lt;br /&gt;MSI (s) (18:D0) [14:21:15:611]: Executing op: ActionStart(Name=SetOnAccessGroupDescription,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:626]: Executing op: CustomActionSchedule(Action=SetOnAccessGroupDescription,ActionType=1025,Source=BinaryData,Target=SetOnAccessGroupDescription,CustomActionData=Contient des comptes utilis&amp;eacute;s par Sophos Anti-Virus lorsqu&amp;#39;il effectue les op&amp;eacute;rations de contr&amp;ocirc;le des menaces et de nettoyage)&lt;br /&gt;MSI (s) (18:70) [14:21:15:626]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3069.tmp, Entrypoint: SetOnAccessGroupDescription&lt;br /&gt;MSI (s) (18:D0) [14:21:15:642]: Executing op: ActionStart(Name=DisablePUADetection,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:642]: Executing op: CustomActionSchedule(Action=DisablePUADetection,ActionType=1025,Source=BinaryData,Target=DisablePUADetection,CustomActionData=C:\ProgramData\Sophos\Sophos Anti-Virus\Config)&lt;br /&gt;MSI (s) (18:5C) [14:21:15:642]: Invoking remote custom action. DLL: C:\windows\Installer\MSI3079.tmp, Entrypoint: DisablePUADetection&lt;br /&gt;MSI (s) (18:D0) [14:21:15:658]: Executing op: ActionStart(Name=DeleteExpiredCaches,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:658]: Executing op: CustomActionSchedule(Action=DeleteExpiredCaches,ActionType=1025,Source=BinaryData,Target=DeleteExpiredCaches,)&lt;br /&gt;MSI (s) (18:A4) [14:21:15:658]: Invoking remote custom action. DLL: C:\windows\Installer\MSI308A.tmp, Entrypoint: DeleteExpiredCaches&lt;br /&gt;MSI (s) (18:D0) [14:21:15:673]: Executing op: ActionStart(Name=EnableJournals,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:673]: Executing op: CustomActionSchedule(Action=EnableJournals,ActionType=1025,Source=BinaryData,Target=EnableJournals,)&lt;br /&gt;MSI (s) (18:E8) [14:21:15:673]: Invoking remote custom action. DLL: C:\windows\Installer\MSI309B.tmp, Entrypoint: EnableJournals&lt;br /&gt;MSI (s) (18:D0) [14:21:15:689]: Executing op: ActionStart(Name=DisableWebProtection,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:689]: Executing op: CustomActionSchedule(Action=DisableWebProtection,ActionType=1025,Source=BinaryData,Target=DisableWebProtection,CustomActionData=C:\ProgramData\Sophos\Sophos Anti-Virus\Config)&lt;br /&gt;MSI (s) (18:48) [14:21:15:689]: Invoking remote custom action. DLL: C:\windows\Installer\MSI30AB.tmp, Entrypoint: DisableWebProtection&lt;br /&gt;MSI (s) (18:D0) [14:21:15:704]: Executing op: ActionStart(Name=DisableSxlLookups,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:704]: Executing op: CustomActionSchedule(Action=DisableSxlLookups,ActionType=1025,Source=BinaryData,Target=DisableSxlLookups,CustomActionData=C:\ProgramData\Sophos\Sophos Anti-Virus\Config)&lt;br /&gt;MSI (s) (18:A4) [14:21:15:720]: Invoking remote custom action. DLL: C:\windows\Installer\MSI30BC.tmp, Entrypoint: DisableSxlLookups&lt;br /&gt;MSI (s) (18:D0) [14:21:15:720]: Executing op: ActionStart(Name=CheckSNMPDLLPresence,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:736]: Executing op: CustomActionSchedule(Action=CheckSNMPDLLPresence,ActionType=1025,Source=BinaryData,Target=CheckSNMPDLLPresence,CustomActionData=C:\ProgramData\Sophos\Sophos Anti-Virus\Config)&lt;br /&gt;MSI (s) (18:F4) [14:21:15:736]: Invoking remote custom action. DLL: C:\windows\Installer\MSI30DC.tmp, Entrypoint: CheckSNMPDLLPresence&lt;br /&gt;MSI (s) (18:D0) [14:21:15:751]: Executing op: ActionStart(Name=UpdateSXLServerList,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:751]: Executing op: CustomActionSchedule(Action=UpdateSXLServerList,ActionType=1025,Source=BinaryData,Target=UpdateSXLServerList,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\&amp;quot;&amp;quot;C:\ProgramData\Sophos\Sophos Anti-Virus\Config&amp;quot;)&lt;br /&gt;MSI (s) (18:20) [14:21:15:751]: Invoking remote custom action. DLL: C:\windows\Installer\MSI30ED.tmp, Entrypoint: UpdateSXLServerList&lt;br /&gt;MSI (s) (18:D0) [14:21:15:782]: Executing op: ActionStart(Name=ApplySAVControlFile,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:782]: Executing op: CustomActionSchedule(Action=ApplySAVControlFile,ActionType=1025,Source=BinaryData,Target=ApplySAVControlFile,CustomActionData=&amp;quot;C:\ProgramData\Sophos\AutoUpdate\cache\savxp\&amp;quot;&amp;quot;C:\ProgramData\Sophos\Sophos Anti-Virus\Config&amp;quot;)&lt;br /&gt;MSI (s) (18:9C) [14:21:15:798]: Invoking remote custom action. DLL: C:\windows\Installer\MSI310D.tmp, Entrypoint: ApplySAVControlFile&lt;br /&gt;MSI (s) (18:D0) [14:21:15:814]: Executing op: ActionStart(Name=GenerateSavMachineId,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:814]: Executing op: CustomActionSchedule(Action=GenerateSavMachineId,ActionType=1025,Source=BinaryData,Target=GenerateSavMachineId,)&lt;br /&gt;MSI (s) (18:58) [14:21:15:814]: Invoking remote custom action. DLL: C:\windows\Installer\MSI312D.tmp, Entrypoint: GenerateSavMachineId&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: ActionStart(Name=RegisterProduct,Description=Inscription en cours du produit,Template=[1])&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: ChangeMedia(MediaVolumeLabel=DISK1,MediaPrompt=Veuillez ins&amp;eacute;rer le disque : 1,,BytesPerTick=0,CopierType=0,,,,,,IsFirstPhysicalMedia=1)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: DatabaseCopy(DatabasePath=C:\windows\Installer\9dc78a.msi,ProductCode={31616A98-3852-49E9-BDD6-77A1AB85571A},,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Note: 1: 1402 2: UNKNOWN\Products\89A6161325839E94DB6D771ABA5875A1\InstallProperties 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Note: 1: 2318 2: C:\windows\Installer\9dc78e.msi &lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: File will have security applied from OpCode.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: ProductRegister(UpgradeCode={597B239E-3032-491A-A322-817737925E8A},VersionString=10.8.10.810,HelpLink=&lt;a href="http://www.sophos.fr/support,HelpTelephone="&gt;www.sophos.fr/support,HelpTelephone=&lt;/a&gt; ,InstallLocation=C:\Program Files (x86)\Sophos\Sophos Anti-Virus\,InstallSource=C:\ProgramData\Sophos\AutoUpdate\cache\savxp\,Publisher=Sophos Limited,URLInfoAbout=www.sophos.fr,URLUpdateInfo=http:/.../updates,,NoModify=1,NoRepair=1,,Comments=Prot&amp;#232;ge votre ordinateur et votre r&amp;eacute;seau contre les menaces ,Contact=Support technique Sophos,,,,EstimatedSize=58259,,,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: ProductCPDisplayInfoRegister()&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: ActionStart(Name=PublishFeatures,Description=Publication des fonctions du produit,Template=Fonction : [1])&lt;br /&gt;MSI (s) (18:D0) [14:21:15:829]: Executing op: FeaturePublish(Feature=SAVService,,Absent=2,Component=Vg@q[]0GO?nmG^LCD4kt2y1ew`QzF9TS&amp;amp;39+j5vrAFB8?=f[z8nmu`RXU$4SaNyflE0OU?cWtkY2sAg*CJv{jz)vo=.&amp;amp;s7Mw}i@@*4tG&amp;amp;LM6_=rZL8sao&amp;amp;W+L}RJ_nt0v=b&amp;amp;X9K@)_4CmDhxkHF`F?_BRZ7dn2pUY~GizzPss89K7$F=-b!1e0]64Kvq$@L-_er4aQk!)&lt;/p&gt;
&lt;p&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=MainComponents,,Absent=2,Component=sprrGUM,$=-[&amp;amp;ltw@0PwS8t,d=~Bl9Fx7YP,u$!X[l'1cG)mZ9]S4!kCb{$IuVIhIE`XT9{hbt=DY3el!u&amp;#39;`3%hL&amp;#39;9TN*q9fia6pkA-3_~J9{8b$sHYm,bPO%5~xceiij94Rl(R5pfNMHu=b?x[T=?&amp;amp;(TgtXr(ePa51?rAl)p?9r`WW.X!oX,nM~fFRY(=0)(^yUawLfIg4)*$6]?A*cZjw=iOw]r_+~b3xUW9^OEK$,mX3l?`F[h.Ao!=51B3@Gk2]!Owe)[k}X,=T~aALA_N=_[ziyG.*7m@0YWkq*u5KmK^*jLJ.H`=j_S*QxCz4u9?9)2k3hi?QTI)griQ0=[_K,qqU-'A.F2oSSV*E6!74S*H6)+=e{gOXz0{PE-Y+q]$R(J9&amp;#39;{&amp;amp;&amp;#39;-Q7RWDrZ071RO5w8eQM8B6g[Ar2tKQZzrNe=e0XoLr^TT5njbNC9aEZ=x`[}V?Mso^X]TF@BT25??u7=dxHrNhM&amp;#39;a+c-A@{9+R&amp;#39;~g*HXdm-3}-^=I[U=^Re^!fg^eqeAKBxLonMArnQchEI]z_%p!JNLs&amp;amp;I9OSwWA.V5xT?D.L.W=Wo?rr$(Q`6ruqi-.Req^wl9&amp;#39;V]Mbj3*fXH4ae7oue2=PMw%wY~RkBbO-^6@b!&amp;#39;94G3&amp;#39;UC$q~JWqX$hUrJk=d*Bs5+WN{JS)7jPz^Og@jsO(bn!(dDVnWISNc$I@6$d5A&amp;#39;(PvkniW1sZCsY@ZHrL_y+BuIWwYuotW3{8gIL]KAx^qU.&amp;amp;snxj(gt9uepMv~]subZJL@z{Y-.?D^6&amp;#39;)v&amp;#39;~9v9RZc(jFgL9R-R[.X`Jw3t+`0tdNmC9xSmcpZk-V(zUav*5'`YAc]34O(wZr`2fonKb6Co@8p)6O4OT3W1eHFT1F(8=9Sz(.0g8wR3{7nvCI&amp;#39;+@y6-W^D@g&amp;amp;5F&amp;#39;6awnl-a@t)Mfu2`)61Uhw!21{rk8%JJbBjqW-LQ=-MB[klXA*AIw8je{CjS`,Y!pof.@FbG2PW5zxY=x+TBXgS,@rmm-6&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=HomeEdition,,Absent=2,Component=vj+?00,@p95P54q&amp;#39;~A4U)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=ConfigFiles,,Absent=2,Component=4Q3DKM`l9A^xRd=eqM,.LIz+m4,=2=2?zF=(m^gksjInj%8FeAn!zWF}kRS@A)FtjR108A*(6`pbXBO!%zt&amp;#39;$rt(_8i9+@Q5xX.&amp;amp;DIo{]xCw0AjQL2FV)9&amp;#39;QR7DXeKGX5?R-8DYuEH=PrdxWg3r((9F~v&amp;#39;{[&amp;amp;aAkfz&amp;#39;*@uFg,=P&amp;amp;HPAg@f&amp;amp;rs6z_KG$7Z@Sm_2qnJf=FmP^U*n,r*AemwXRtQkiz)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=Resources,,Absent=2,Component=?$?&amp;amp;&amp;amp;WFt`8a&amp;amp;B`.f~7`u_]K_ZW!6z80Rb{`RtQmA0+I,2M+*^A!Oq7j8fv8[[8{xvmn[n?.$(&amp;#39;%+n--*-sHCP?+VPAT[pV7l2WvBA}i^0rrH]A}6D?S^U0!+AoHV?%BO+Ax]wSB,NiBp894@j@v_X9Lho`OH@bm-ZC2`yuZ(!9[(i}FzduNl_75Lwf^?_8F?@W!i)M`''iRkI*ZWY@ft]q_=8`d`)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=EngineFiles,,Absent=2,Component=B&amp;#39;H[7pbT+9RjCb&amp;amp;klv}8)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: FeaturePublish(Feature=ServiceComponents,,Absent=2,Component=$F{Ui&amp;amp;C@BA*({-6m[ch8p?)^w@e]UAE]BB3c*I*d}ofI&amp;amp;wxEB=CKG)%vix@QuWPR-@hf%?q$,A8TZ{V5u6ilKVh6,9!Y-}v+egguUq]plY8My@!(.Q9g]C_dyahe_Zx!K?&amp;#39;y}5Ig!$BNy,+MB3~Y*?G~Ah8_5C}MBd@$xK(o09zh6`MQ(R{l,aP=7z70[AT9MABI({,J=WuylnAOV?34xJHfz?(+u-wad?0e&amp;amp;9%E!Luxt8XRTob_fH,I{8(Z=_&amp;amp;^1utaAby.bX73p8rbSi$X0e..p[V+2@fOV@F-nf0ls)yhmsZ]`L$A$?Qk2anN=CKd@My_H289H9mW{@KX%g5vJu7y]L1CP?T$id028`0I6H,PUK7f3@kH!TUL9s[t[C3,h`]lT?EJF$PimCc63j6qDn0?}8K&amp;#39;2@LrMX]QT(wJNxo}r=Aa1+{q^7]s%@&amp;#39;hq^&amp;#39;O4A-}$ldrqg8pLwL(Z*c*[?&amp;#39;8ZTpRVOFBy[K&amp;amp;H=HsY?D$Rz-=k%gS)uR}y6KQr8}{TV&amp;#39;JOMVMMkOqQ&amp;amp;~UM@v[@@StB[?a&amp;amp;,PX,iFM*?3D},350cKc~d4ZO,bq79rbveSUbkN4u'7?W&amp;amp;A3!=}IPYO,^%9R0)H5gnJbt?&amp;amp;aP^pI?z+.,0!}]4a3^97NiX,q))gOag+{VP_w*9G3Q?fJV.@PGS8o$t3oo97FwL*$$e~8VYV.u1uG]=c{r}UlZn~W+Bg_d@0909ta40fBxJwN-KC{C2*vdAOVt1eKP&amp;#39;Y947r*a5ZbO=$HMH,7*d.XnzL)u,Hdc?]a)EPrh`jb.[5%X5&amp;amp;s+?PS22)2-+.h6_6?FQmY'@qdd*i!qk'PrA]SLe.da=vV3%?$]&amp;amp;7&amp;#39;3P2drzji3AH[@ClJU7.u!BlV0Lfv~9(NetU}4xgcY[.&amp;#39;Z?5fe=p$$Yb2nRZWT5eA[fE5dAMbCr]yATI&amp;#39;Xv.ur?~hE=P!VBN-CjLjsh26&amp;amp;fuCD?lEVp^5krd1hNpir]&amp;#39;l-?*5?AZf&amp;amp;felFR!Ev$6=-?D1&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=PublishProduct,Description=Publication en cours des informations sur le produit,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CleanupConfigData()&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\89A6161325839E94DB6D771ABA5875A1\Patches 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: RegisterPatchOrder(Continue=0,SequenceType=1,Remove=0)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Products\89A6161325839E94DB6D771ABA5875A1\Patches 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ProductPublish(PackageKey={DA891FEE-A03E-4AE7-98FD-7F1E6F27DD3B})&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: UpgradeCodePublish(UpgradeCode={597B239E-3032-491A-A322-817737925E8A})&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: SourceListPublish(,,DiskPromptTemplate=[1],,NumberOfDisks=1)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Note: 1: 1402 2: UNKNOWN\Installer\Products\89A6161325839E94DB6D771ABA5875A1\SourceList 3: 2 &lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ProductPublishClient(,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: SourceListRegisterLastUsed(SourceProduct={31616A98-3852-49E9-BDD6-77A1AB85571A},LastUsedSource=C:\ProgramData\Sophos\AutoUpdate\cache\savxp\)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Entering CMsiConfigurationManager::SetLastUsedSource.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Specifed source is already in a list.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: User policy value &amp;#39;SearchOrder&amp;#39; is &amp;#39;nmu&amp;#39;&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Adding new sources is allowed.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Set LastUsedSource to: C:\ProgramData\Sophos\AutoUpdate\cache\savxp\.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Set LastUsedType to: n.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Set LastUsedIndex to: 1.&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RollbackRegisterTamperProtectionControlX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RollbackRegisterTamperProtectionControlX64,ActionType=1378,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /u /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\TamperProtectionControlX64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RollbackRegisterSavShellExtX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RollbackRegisterSavShellExtX64,ActionType=1378,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /u /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SavShellExtX64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RollbackRegisterSophosOfficeAV,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RollbackRegisterSophosOfficeAV,ActionType=1378,Source=C:\windows\SysWOW64\,Target=REGSVR32.EXE /u /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SophosOfficeAV.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RollbackRegisterSophosOfficeAVX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RollbackRegisterSophosOfficeAVX64,ActionType=1378,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /u /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SophosOfficeAVx64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RegisterTamperProtectionControlX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RegisterTamperProtectionControlX64,ActionType=1570,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\TamperProtectionControlX64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RegisterSavShellExtX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RegisterSavShellExtX64,ActionType=1570,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SavShellExtX64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RegisterSophosOfficeAV,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RegisterSophosOfficeAV,ActionType=1570,Source=C:\windows\SysWOW64\,Target=REGSVR32.EXE /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SophosOfficeAV.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RegisterSophosOfficeAVX64,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RegisterSophosOfficeAVX64,ActionType=1570,Source=C:\windows\SysWOW64\,Target=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\NATIVE.EXE&amp;quot; 37 REGSVR32.EXE /s &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\\SophosOfficeAVx64.dll&amp;quot;,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: ActionStart(Name=RollbackInstallSecurityCenter,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:845]: Executing op: CustomActionSchedule(Action=RollbackInstallSecurityCenter,ActionType=1281,Source=BinaryData,Target=UninstallSecurityCenter,CustomActionData=10.8.10.810;)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:861]: Executing op: ActionStart(Name=RunPreLaunchScript,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:861]: Executing op: CustomActionSchedule(Action=RunPreLaunchScript,ActionType=1025,Source=BinaryData,Target=RunPreLaunchScripts,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\&amp;quot;&amp;quot;C:\ProgramData\Sophos\AutoUpdate\cache\savxp\&amp;quot;&amp;quot;10.8.10.810&amp;quot;)&lt;br /&gt;MSI (s) (18:04) [14:21:15:876]: Invoking remote custom action. DLL: C:\windows\Installer\MSI315D.tmp, Entrypoint: RunPreLaunchScripts&lt;br /&gt;MSI (s) (18:D0) [14:21:15:876]: Executing op: ActionStart(Name=RegisterDCIfEnabled,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:892]: Executing op: CustomActionSchedule(Action=RegisterDCIfEnabled,ActionType=1537,Source=BinaryData,Target=RegisterDCIfEnabled,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:892]: Executing op: ActionStart(Name=StartSAVServices,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:907]: Executing op: CustomActionSchedule(Action=StartSAVServices,ActionType=1537,Source=BinaryData,Target=StartSAVServices,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:923]: Executing op: ActionStart(Name=CopySwiFcRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:923]: Executing op: CustomActionSchedule(Action=CopySwiFcRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3073,Source=BinaryData,Target=RenameAndMarkForDelete,CustomActionData=C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_fc.exe)&lt;br /&gt;MSI (s) (18:64) [14:21:15:923]: Invoking remote custom action. DLL: C:\windows\Installer\MSI319D.tmp, Entrypoint: RenameAndMarkForDelete&lt;br /&gt;MSI (s) (18:D0) [14:21:15:923]: Executing op: ActionStart(Name=CopySwiFcToProgramData.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:923]: Executing op: CustomActionSchedule(Action=CopySwiFcToProgramData.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3073,Source=BinaryData,Target=CopyToShadowDir,CustomActionData=C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_fc.exe)&lt;br /&gt;MSI (s) (18:10) [14:21:15:923]: Invoking remote custom action. DLL: C:\windows\Installer\MSI319E.tmp, Entrypoint: CopyToShadowDir&lt;br /&gt;MSI (s) (18:D0) [14:21:15:939]: Executing op: ActionStart(Name=CopyScfDotDatToProgramData.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;CopyToShadowDir: C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_fc.exe has been copied to C:\Program Files (x86)\Common Files\Sophos\Web Intelligence\swi_fc.exe&lt;br /&gt;MSI (s) (18:D0) [14:21:15:939]: Executing op: CustomActionSchedule(Action=CopyScfDotDatToProgramData.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3073,Source=BinaryData,Target=CopyToShadowDir,CustomActionData=C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\scf.dat)&lt;br /&gt;MSI (s) (18:E0) [14:21:15:939]: Invoking remote custom action. DLL: C:\windows\Installer\MSI31AE.tmp, Entrypoint: CopyToShadowDir&lt;br /&gt;MSI (s) (18:D0) [14:21:15:939]: Executing op: ActionStart(Name=SwiServiceRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;CopyToShadowDir: C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\scf.dat has been copied to C:\Program Files (x86)\Common Files\Sophos\Web Intelligence\scf.dat&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: CustomActionSchedule(Action=SwiServiceRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3393,Source=BinaryData,Target=UninstallService,CustomActionData=swi_service)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: ActionStart(Name=SwiServiceRegister.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: CustomActionSchedule(Action=SwiServiceRegister.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3585,Source=BinaryData,Target=CAQuietExec,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe&amp;quot; /registerService)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: ActionStart(Name=SwiCalloutRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: CustomActionSchedule(Action=SwiCalloutRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3393,Source=BinaryData,Target=CAQuietExec,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_di.exe&amp;quot; -r &amp;quot;C:\windows\TEMP\SwiRebootRequired.txt&amp;quot; /u &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_callout.inf&amp;quot;)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: ActionStart(Name=SwiCalloutInstall.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:15:954]: Executing op: CustomActionSchedule(Action=SwiCalloutInstall.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3073,Source=BinaryData,Target=CAQuietExec,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_di.exe&amp;quot; -r &amp;quot;C:\windows\TEMP\SwiRebootRequired.txt&amp;quot; &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_callout.inf&amp;quot;)&lt;br /&gt;MSI (s) (18:44) [14:21:15:954]: Invoking remote custom action. DLL: C:\windows\Installer\MSI31BF.tmp, Entrypoint: CAQuietExec&lt;br /&gt;CAQuietExec: driverInstaller&lt;br /&gt;CAQuietExec: &lt;br /&gt;CAQuietExec: Installation error: The driver package is not signed.&lt;br /&gt;CAQuietExec: error:1&lt;br /&gt;CAQuietExec: Error 0x80070001: Command line returned an error.&lt;br /&gt;CAQuietExec: Error 0x80070001: CAQuietExec Failed&lt;br /&gt;CustomAction SwiCalloutInstall.11DACB83_28A7_4FA6_AF5B_C006E340C101 returned actual error code 1603 (note this may not be 100% accurate if translation happened inside sandbox)&lt;br /&gt;MSI (s) (18:D0) [14:21:16:048]: Note: 1: 2265 2: 3: -2147287035 &lt;br /&gt;MSI (s) (18:D0) [14:21:16:048]: User policy value &amp;#39;DisableRollback&amp;#39; is 0&lt;br /&gt;MSI (s) (18:D0) [14:21:16:048]: Machine policy value &amp;#39;DisableRollback&amp;#39; is 0&lt;br /&gt;&lt;span style="text-decoration:underline;"&gt;Fin de l&amp;#39;action 14:21:16 : InstallFinalize. Valeur renvoy&amp;eacute;e 3.&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;&lt;/span&gt;&lt;/p&gt;
&lt;p&gt;&lt;span style="text-decoration:underline;"&gt;MSI (s) (18:D0) [14:21:22:170]: Executing op: ActionStart(Name=RunErrorScript,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:22:170]: Executing op: CustomActionRollback(Action=RunErrorScript,ActionType=1345,Source=BinaryData,Target=RunErrorScripts,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\&amp;quot;&amp;quot;C:\ProgramData\Sophos\AutoUpdate\cache\savxp\&amp;quot;&amp;quot;10.8.10.810&amp;quot;)&lt;br /&gt;MSI (s) (18:04) [14:21:22:186]: Invoking remote custom action. DLL: C:\windows\Installer\MSI4A0D.tmp, Entrypoint: RunErrorScripts&lt;br /&gt;MSI (s) (18:D0) [14:21:22:202]: Executing op: ActionStart(Name=CheckRegForNullDACLs,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:22:202]: Executing op: ActionStart(Name=RestoreMovedFiles,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:22:202]: Executing op: CustomActionRollback(Action=RestoreMovedFiles,ActionType=1281,Source=BinaryData,Target=RestoreMovedFiles,CustomActionData=C:\Program Files (x86)\Sophos\Sophos Anti-Virus\)&lt;br /&gt;MSI (s) (18:64) [14:21:22:202]: Invoking remote custom action. DLL: C:\windows\Installer\MSI4A2D.tmp, Entrypoint: RestoreMovedFiles&lt;br /&gt;MSI (s) (18:D0) [14:21:22:217]: Executing op: ActionStart(Name=SetUpdateFailed,,)&lt;br /&gt;MSI (s) (18:D0) [14:21:22:217]: Executing op: CustomActionRollback(Action=SetUpdateFailed,ActionType=1281,Source=BinaryData,Target=SetUpdateFailed,)&lt;br /&gt;MSI (s) (18:10) [14:21:22:217]: Invoking remote custom action. DLL: C:\windows\Installer\MSI4A3E.tmp, Entrypoint: SetUpdateFailed&lt;br /&gt;MSI (s) (18:D0) [14:21:22:233]: Executing op: End(Checksum=0,ProgressTotalHDWord=0,ProgressTotalLDWord=0)&lt;br /&gt;MSI (s) (18:D0) [14:21:22:233]: Error in rollback skipped. Return: 5&lt;br /&gt;MSI (s) (18:D0) [14:21:22:233]: Note: 1: 2318 2: &lt;br /&gt;MSI (s) (18:D0) [14:21:22:249]: Note: 1: 2318 2: &lt;br /&gt;MSI (s) (18:D0) [14:21:22:249]: No System Restore sequence number for this installation.&lt;br /&gt;MSI (s) (18:D0) [14:21:22:249]: Unlocking Server&lt;br /&gt;MSI (s) (18:D0) [14:21:22:249]: PROPERTY CHANGE: Deleting UpdateStarted property. Its current value is &amp;#39;1&amp;#39;.&lt;br /&gt;Fin de l&amp;#39;action 14:21:22 : INSTALL. Valeur renvoy&amp;eacute;e 3.&lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466270?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 12:40:22 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:3e15acb6-eeab-4952-89d0-92b96eaa00e8</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello ,&lt;/p&gt;
&lt;p&gt;&lt;span&gt;&lt;span style="color:#008000;"&gt;&lt;em&gt;the log with the error was&amp;nbsp;Sophos Anti-Virus Major Install Log&lt;/em&gt;&lt;/span&gt;&lt;br /&gt;&lt;/span&gt;I see, thanks.&amp;nbsp; Whatever caused the install to fail should be in this log. Please search for the French equivalent of &lt;span style="font-family:courier new, courier;"&gt;Return value 3&lt;/span&gt; (there might be more than one occurrence). Normally the preceding lines have at least some information about the error.&lt;/p&gt;
&lt;p&gt;Christian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466269?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 12:36:50 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:6ebfd526-6cc2-4100-a562-b42712286082</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;MSI (s) (24:04) [14:15:20:940]: Invoking remote custom action. DLL: C:\windows\Installer\MSIC73A.tmp, Entrypoint: CAQuietExec&lt;br /&gt;CAQuietExec: driverInstaller&lt;br /&gt;CAQuietExec: &lt;br /&gt;CAQuietExec: Installation error: The driver package is not signed.&lt;br /&gt;CAQuietExec: error:1&lt;br /&gt;CAQuietExec: Error 0x80070001: Command line returned an error.&lt;br /&gt;CAQuietExec: Error 0x80070001: CAQuietExec Failed&lt;br /&gt;CustomAction SwiCalloutInstall.11DACB83_28A7_4FA6_AF5B_C006E340C101 returned actual error code 1603 (note this may not be 100% accurate if translation happened inside sandbox)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:018]: Note: 1: 2265 2: 3: -2147287035 &lt;br /&gt;MSI (s) (24:C0) [14:15:21:018]: User policy value &amp;#39;DisableRollback&amp;#39; is 0&lt;br /&gt;MSI (s) (24:C0) [14:15:21:018]: Machine policy value &amp;#39;DisableRollback&amp;#39; is 0&lt;br /&gt;Fin de l&amp;#39;action 14:15:21 : InstallFinalize. Valeur renvoy&amp;eacute;e 3.&lt;br /&gt;MSI (s) (24:C0) [14:15:21:018]: Note: 1: 2318 2: &lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: Header(Signature=1397708873,Version=500,Timestamp=1385460197,LangId=1036,Platform=0,ScriptType=2,ScriptMajorVersion=21,ScriptMinorVersion=4,ScriptAttributes=1)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: DialogInfo(Type=0,Argument=1036)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: DialogInfo(Type=1,Argument=Sophos Anti-Virus)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: RollbackInfo(,RollbackAction=Rollback,RollbackDescription=Annulation en cours de l&amp;#39;action :,RollbackTemplate=[1],CleanupAction=RollbackCleanup,CleanupDescription=Suppression en cours des fichiers de sauvegarde,CleanupTemplate=Fichier : [1])&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: ActionStart(Name=SwiCalloutInstall.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: ProductInfo(ProductKey={31616A98-3852-49E9-BDD6-77A1AB85571A},ProductName=Sophos Anti-Virus,PackageName=Sophos Anti-Virus.msi,Language=1036,Version=168296458,Assignment=1,ObsoleteArg=0,ProductIcon=ARPPRODUCTICON.exe,,PackageCode={DA891FEE-A03E-4AE7-98FD-7F1E6F27DD3B},,,InstanceType=0,LUASetting=0,RemoteURTInstalls=0,ProductDeploymentFlags=3)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: ActionStart(Name=SwiCalloutRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:049]: Executing op: CustomActionRollback(Action=SwiCalloutRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3393,Source=BinaryData,Target=CAQuietExec,CustomActionData=&amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_di.exe&amp;quot; -r &amp;quot;C:\windows\TEMP\SwiRebootRequired.txt&amp;quot; /u &amp;quot;C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_callout.inf&amp;quot;)&lt;br /&gt;MSI (s) (24:10) [14:15:21:049]: Invoking remote custom action. DLL: C:\windows\Installer\MSIC7A8.tmp, Entrypoint: CAQuietExec&lt;br /&gt;CAQuietExec: driverInstaller&lt;br /&gt;CAQuietExec: &lt;br /&gt;CAQuietExec: Uninstallation error: Unknown error code: 0xe0000302&lt;br /&gt;CAQuietExec: error:1&lt;br /&gt;CAQuietExec: Error 0x80070001: Command line returned an error.&lt;br /&gt;CAQuietExec: Error 0x80070001: CAQuietExec Failed&lt;br /&gt;CustomAction SwiCalloutRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101 returned actual error code 1603 but will be translated to success due to continue marking&lt;br /&gt;MSI (s) (24:C0) [14:15:21:080]: Executing op: ActionStart(Name=SwiServiceRegister.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:080]: Executing op: ActionStart(Name=SwiServiceRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,,)&lt;br /&gt;MSI (s) (24:C0) [14:15:21:080]: Executing op: CustomActionRollback(Action=SwiServiceRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101,ActionType=3393,Source=BinaryData,Target=UninstallService,CustomActionData=swi_service)&lt;br /&gt;MSI (s) (24:70) [14:15:21:080]: Invoking remote custom action. DLL: C:\windows\Installer\MSIC7C9.tmp, Entrypoint: UninstallService&lt;br /&gt;UninstallService: Unable to open service to delete it. Error 1060&lt;br /&gt;CustomAction SwiServiceRollback.11DACB83_28A7_4FA6_AF5B_C006E340C101 returned actual error code 1603 but will be translated to success due to continue marking&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466265?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 12:18:13 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:cae4979a-4d59-4cdc-b435-11a3ba9b1d5b</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;&lt;span lang="en"&gt;&lt;span&gt;&lt;span&gt;the SOPHOS installer creates the groups correctly but they are deleted during the rollback of the installation apparently&lt;/span&gt;&lt;/span&gt;&lt;/span&gt;&lt;span&gt; &lt;/span&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466263?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 11:48:38 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:f315ec2b-e195-4b33-979c-da4687d4927d</guid><dc:creator>daunay olivier</dc:creator><description>&lt;p&gt;Thank you for your response&lt;/p&gt;
&lt;p&gt;the log with the error was&amp;nbsp;Sophos Anti-Virus Major Install Log&lt;/p&gt;
&lt;p&gt;I control the log Sophos Anti-Virus Major CustomActions Log and found this error :&lt;/p&gt;
&lt;p&gt;2021-04-20 11:47:01 CreateUserGroups: Action started&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: CreateSophosUserGroup: Group SophosUser has been created successfully.&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: CreateSophosUserGroup: Group SophosPowerUser has been created successfully.&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: CreateSophosUserGroup: Group SophosAdministrator has been created successfully.&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: CreateSophosUserGroup: Group SophosOnAccess has been created successfully.&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: PROCESSOR_ARCHITECTURE environment variable is: AMD64&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Local name of well-known group Administrators is Administrateurs&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Local name of well-known group PowerUsers is Utilisateurs avec pouvoir&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Local name of well-known group Users is Utilisateurs&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Failed to add the members of group PowerUsers to SophosPowerUser group. HRESULT: 0x80070057&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Adding LOCAL SYSTEM to the SophosAdministrator role in the machine file&lt;br /&gt;2021-04-20 11:47:01 CreateUserGroups: Action succeeded&lt;/p&gt;
&lt;p&gt;I don&amp;#39;t find these usergroups localy like on the other computer ?&lt;/p&gt;
&lt;p&gt;&lt;img src="/resized-image/__size/640x480/__key/communityserver-discussions-components-files/3/pastedimage1618918934749v1.png" alt=" " /&gt;&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Problem on reinstalling antivirus on computer</title><link>https://community.sophos.com/thread/466260?ContentTypeID=1</link><pubDate>Tue, 20 Apr 2021 11:15:19 GMT</pubDate><guid isPermaLink="false">4be5eb7d-caa4-4ff5-8e60-8f9463545a35:0a0e0755-4799-4ffd-bfb7-64cdda0908d1</guid><dc:creator>QC</dc:creator><description>&lt;p&gt;Hello &lt;span&gt;daunay olivier&lt;/span&gt;,&lt;/p&gt;
&lt;p&gt;this is from the ALUpdate log, isn&amp;#39;t it?&lt;br /&gt;You say that everything installed except SAVXP (and it does not appear in &lt;em&gt;Programs and Features&lt;/em&gt;)? The actual final error is the rather vague&amp;nbsp;&lt;span style="font-family:courier new, courier;"&gt;ERROR: Installation failed&lt;/span&gt;. The rest is just consequential. Guess there is nothing meaningful prior to this message.&lt;/p&gt;
&lt;p&gt;Please &lt;a href="https://support.sophos.com/support/s/article/KB-000033524?c__displayLanguage=en_US" rel="noopener noreferrer" target="_blank"&gt;check the &lt;span style="font-family:courier new, courier;"&gt;Sophos Anti-Virus Major Install&lt;/span&gt;&lt;/a&gt; and &lt;span style="font-family:courier new, courier;"&gt;Sophos Anti-Virus Major CustomActions&lt;/span&gt; logs in &lt;span style="font-family:courier new, courier;"&gt;%windir%\Temp&lt;/span&gt;.&lt;/p&gt;
&lt;p&gt;Christian&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>