avast and lineage 2

Hey,
Not sure if its right section.
But i have problems running this NCSoft game.
When i turn avast off it launches.
With avast enabled it doesnt launch just splash screen.
In task manager i can see process launch as normal.
I can see this sort of error in avast log:


2009-05-13 07:46:05	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: FilterReplyMessage, FAILED, 80070005.  
2009-05-13 07:46:05	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: DeviceIoControl [IOCTL_AAVM_START_REQUEST_AND_SET_RESULTS/2] failed, 80070005.  
2009-05-13 07:46:26	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: FilterReplyMessage, FAILED, 80070005.  
2009-05-13 07:46:26	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: DeviceIoControl [IOCTL_AAVM_START_REQUEST_AND_SET_RESULTS/2] failed, 80070005.  
2009-05-13 07:46:33	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: FilterReplyMessage, FAILED, 80070005.  
2009-05-13 07:46:33	SYSTEM	1848	AAVM - scanning error: DriverScanListenThread: DeviceIoControl [IOCTL_AAVM_START_REQUEST_AND_SET_RESULTS/2] failed, 80070005.  

Problem also is that computer hangs and ive got all connections blocked all i can do is restart.

Computer is fresh (for that matter) install of Win Vista 32bit, fully updated and new directX.
Game is fresh install also.
No other things like firewall or spybots etc are installed.

I apriciate any support
Ian

So noone has any idea ?

But i can say to scan lineage 2 folder and u can put it on exclusion list of the scanner. So im sure its will work or if its didnt try to check your firewall if he allow this game to launch and if you are using other protection please let us know and post a hijackthis log so maybe more people will can help you.

I can say when you will go to sleep try to do a boot time scan for see if there any malware on your pc.

Mr.Agent

Hi,
Ty for your answer was away for few days,
my log looks like this


Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 05:52:17, on 2009-05-18
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal

Running processes:
C:\Windows\system32\Dwm.exe
C:\Windows\system32\taskeng.exe
C:\Program Files\ASUS\ASUS Live Update\ALU.exe
C:\Program Files\ASUS\SmartLogon\sensorsrv.exe
C:\Windows\Explorer.EXE
C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
C:\Windows\RtHDVCpl.exe
C:\Program Files\ATKOSD2\ATKOSD2.exe
C:\Program Files\ASUS\ATK Media\DMedia.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Windows\System32\rundll32.exe
C:\Program Files\Alwil Software\Avast4\ashDisp.exe
C:\Windows\ehome\ehtray.exe
C:\Program Files\Windows Live\Messenger\msnmsgr.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Windows\ehome\ehmsas.exe
C:\Program Files\Windows Live\Contacts\wlcomm.exe
C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Windows\system32\conime.exe
D:\Gry\L2NET\L2NET.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.asus.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
O1 - Hosts: ::1 localhost
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: flashget urlcatch - {2F364306-AA45-47B5-9F9D-39A8B94E7EF7} - D:\Flashget\jccatch.dll
O2 - BHO: Pomocnik rejestracji usługi Windows Live - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: FlashGet GetFlash Class - {F156768E-81EF-470C-9057-481BA8380DBA} - D:\Flashget\getflash.dll
O4 - HKLM\..\Run: [SMSERIAL] C:\Program Files\Motorola\SMSERIAL\sm56hlpr.exe
O4 - HKLM\..\Run: [RtHDVCpl] RtHDVCpl.exe
O4 - HKLM\..\Run: [Skytel] Skytel.exe
O4 - HKLM\..\Run: [ATKOSD2] "C:\Program Files\ATKOSD2\ATKOSD2.exe"
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files\ASUS\ATK Media\DMEDIA.EXE
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\Windows\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\Windows\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKCU\..\Run: [ehTray.exe] C:\Windows\ehome\ehTray.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'USŁUGA LOKALNA')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'USŁUGA SIECIOWA')
O8 - Extra context menu item: &Ściągnij przy pomocy FlashGet'a - D:\Flashget\jc_link.htm
O8 - Extra context menu item: &Ściągnij wszystko przy pomocy FlashGet'a - D:\Flashget\jc_all.htm
O8 - Extra context menu item: E&ksportuj do programu Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O9 - Extra button: Wyślij do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Wyślij &do programu OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\Flashget\FlashGet.exe
O9 - Extra 'Tools' menuitem: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - D:\Flashget\FlashGet.exe
O13 - Gopher Prefix: 
O16 - DPF: {1E54D648-B804-468d-BC78-4AFFED8E262E} (System Requirements Lab) - http://www.nvidia.com/content/DriverDownload/srl/3.0.0.0/srl_bin/sysreqlab3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{185ED536-3465-4AC0-A3A3-5EF05753045C}: NameServer = 192.168.1.100
O17 - HKLM\System\CS1\Services\Tcpip\..\{185ED536-3465-4AC0-A3A3-5EF05753045C}: NameServer = 192.168.1.100
O17 - HKLM\System\CS2\Services\Tcpip\..\{185ED536-3465-4AC0-A3A3-5EF05753045C}: NameServer = 192.168.1.100
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O23 - Service: ADSM Service (ADSMService) - Unknown owner - C:\Program Files\ASUS\ASUS Data Security Manager\ADSMSrv.exe
O23 - Service: ASLDR Service (ASLDRService) - Unknown owner - C:\Program Files\ATK Hotkey\ASLDRSrv.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - Unknown owner - C:\Program Files\ATKGFNEX\GFNEXSrv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\Windows\system32\nvvsvc.exe
O23 - Service: PnkBstrA - Unknown owner - C:\Windows\system32\PnkBstrA.exe
O23 - Service: spmgr - Unknown owner - C:\Program Files\ASUS\NB Probe\SPM\spmgr.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files\Common Files\Steam\SteamService.exe

--
End of file - 6728 bytes

I might have firewall in my router(not sure how to configure it yet ) later after boot scan i will try to connect my computer without router.
I did put Lineage 2 in exlusion folder for residental shield and scanner it didnt work.
I keep you informed after scan.

If you disable your A/V, and the game runs, I highly doubt that the firewall has anything to do with it.

Usually, a firewall will prevent you from connecting to online servers, not running the game in the first place.

I see that Mr.Agent is trying to help, but I don’t know if it will in this case.

First, since I don’t know your situation to the fullest, I’d like to ask if you had any other A/V programs installed on your computer recently before you installed avast.

Second, have you applied any patches to this game recently, or checked for patches.

Third, are you sure that the drivers for your computer (video card, sound card, etc) are up to date, and don’t have any known problems.

Fourth, I would ask exactly what O/S you are running, with SP level.

After all of that is said and done, we might be able to get a bit further with your question. Thanks!

EDIT

It looks like you run Windows Vista, but I’m looking at these entries:

O8 - Extra context menu item: &Ściągnij przy pomocy FlashGet’a - D:\Flashget\jc_link.htm
O8 - Extra context menu item: &Ściągnij wszystko przy pomocy FlashGet’a - D:\Flashget\jc_all.htm

I’m not sure what they are or why they’re there. I’m guessing that it’s a download manager, that you wanted to be installed, but who knows. Let us know if you installed it or not.

hey :wink:
yes im using WIndows Vista Premium with aero switched off Wersja 6.0.6001 Service Pack 1 Kompilacja 6001
Yes Lineage 2 did update to new chronicle and since then im having some problems with l2 and avast.game is up to date. Before that was all alright.
Avast is my only a/v im using and i wasnt using any other.
Drivers should be up to date as its notebook, but it doesnt matter so much as same situation happens on pc.
There are no known problems with hardware or with soft.
Yes flashget is downlaod manager. Works good all the time. I dont have it installed on my pc.

EDIT

Ok after full scan before win start nothing was found.
Computer is clean.
From error log that i did post at the begining Can it be avast has problems in getting acces to scan actually files ?

Does avast scan hosts file ?

No. You need Windows Defender or HostsMan.

Was question regarding my issue,trying to find where avast seems to have problem :confused:

Heres what i found in Vista error log


 System 

  - Provider 

   [ Name]  avast! 
 
  - EventID 90 

   [ Qualifiers]  16896 
 
   Level 2 
 
   Task 4 
 
   Keywords 0x80000000000000 
 
  - TimeCreated 

   [ SystemTime]  2009-05-19T16:11:01.000Z 
 
   EventRecordID 473 
 
   Channel Antivirus 
 
   Computer ZLOTKO 
 
   Security 
 

- EventData 

   AAVM - scanning error: DriverScanListenThread: FilterReplyMessage, FAILED, 80070005.  

Again, you didn’t have another A/V program and/or Third-party program installed before avast, did you? If so, how was it removed?

The error that you are posting should be related to “Permission Denied”. A firewall, or remaining A/V product could cause this.

Nope as you read in first post this is FRESH install of system.
i have avast and windows defender that i switched off in msconfig

Sorry, didn’t catch it. I’m at a loss. Don’t know where to go from here, other than to switch off Avast while you play the game, which is of course, not the best idea.

I hope someone with more experience with this game can help you out further.

im not sure if its game problem its rather avast having problem in accessing some stuff