-
Posts
38,023 -
Joined
-
Last visited
-
Days Won
1,507
Everything posted by Marcos
-
Eset antivirus blocks Viber.exec file -
Marcos replied to Sussane Towers's topic in Malware Finding and Cleaning
Probably you mean the installer for MS Windows which is detected as a potentially unwanted application. This kind of detection is ok (ie. the application is not detected as malware). If you think that benefits of using software classified as PUA outweigh potential risks, you can exclude such application from detection. -
The dump must be from the time of a freeze, otherwise it wouldn't contain any useful data.
-
There has been an issue with ekrn spiking cpu recently which was caused by specially crafted (corrupt) xml files but this was already fixed earlier this week. Please drop me a download link to the ekrn dump so that I can check it out.
-
False Positive with latest definitions?????
Marcos replied to PhilMabee's topic in Malware Finding and Cleaning
Well, the hosts entry detected by ESET was added by Virut so the detection was ok. It was not a false positive but a clash of 2 security applications installed at a time which is not recommended. When both applications trigger a detection, it can have unpredictable consequences. -
We'll need to get a complete memory dump from a freeze generated manually as per the instructions here. The dump should reveal the cause of the freeze. Also checking a SysInspector log might reveal suspicious software or drivers that might potentially cause the issue.
-
False Positive with latest definitions?????
Marcos replied to PhilMabee's topic in Malware Finding and Cleaning
If malware was seen to use the same hosts entries, no wonder that a detection was added. Please supply me with a download link to your hosts file so that I can check it out. -
At the moment this is by design. Anti-Phishing protection doesn't protect against malware but rather from fraud and not everyone wants to have it enabled. In such case, changing the protection status wouldn't be desired. You could say the same about the notifications about missing OS updates which are vital for protection. However, these notifications nag many users and they rather prefer keeping this feature disabled. You would be surprised that some corporate users even want to keep the protection status green even when real-time protection is temporarily disabled.
-
Configuration - GP vs Local on client
Marcos replied to ritter.rs's topic in ESET PROTECT On-prem (Remote Management)
Not sure what you mean by overwriting configuration with a GP config; the only way how to adjust the configuration of ESET clients is by means of Remote Administrator policies. Also it's most likely policies that rewrite the configuration of the update server on clients. -
Security programs are integrated tightly with the operating system. As a result, the likelihood of an issue occuring during upgrade in certain system configurations is higher than with other software. At the moment, we were able to test only the program itself but not the PCU as the testing department is now focusing chiefly on brand new product versions that should be introduced later this year.
-
The problem is that some routers do not handle TXT DNS queries / responses properly, however, in such case using Google's DNS servers should solve the issue. I'd suggest contacting Customer care and providing them with a Wireshark pcap log from the moment when Web control doesn't work.
-
Please use the Uninstall tool in safe mode as per the instructions here. Then run Live Installer which will download and install the latest version of ESET NOD32 Antivirus 7.0.317.
-
ESET NOD32 Antivirus 7.0.317 has been released
Marcos replied to Marcos's topic in ESET NOD32 Antivirus
The download links were lost as the text was copied from the previous announcement but have been added in the mean time. ESET reserves the exclusive right to announce the availability of new versions. No premature announcements should be made without ESET's consent. -
ESET Smart Security version 7.0.317.4 has been released and is available to download. New features: fixed: issue with firewall not displaying pop-up windows in interactive mode fixed: issue with firewall not displaying pop-up windows when network-aware applications were modified and subsequent communication was blocked fixed: issue with toast notifications not being displayed on Windows 8+ fixed: issue with event notifications being sent with no content fixed: issue with Windows Action Center notifications fixed: issue with Antispam module crashes fixed: issue with Anti-Phishing protection not being re-enabled when enabling protection via the tray icon context menu To download and install ESET Smart Security version 7.0.317.4, download and run Live Installer available on the download page. Installation over previous versions is fully supported. Update to the latest version via program's gui is not available yet. For more information and to download the product, visit the ESET website or contact your local reseller, distributor or ESET office.
-
ESET NOD32 Antivirus version 7.0.317.4 has been released and is available to download. New features: fixed: issue with toast notifications not being displayed on Windows 8+ fixed: issue with event notifications being sent with no content fixed: issue with Windows Action Center notifications fixed: issue with Anti-Phishing protection not being re-enabled when enabling protection via the tray icon context menu To download and install ESET NOD32 Antivirus version 7.0.317.4, download and run Live Installer available on the download page. Installation over previous versions is fully supported. Update to the latest version via program's gui is not available yet. For more information and to download the product, visit the ESET website or contact your local reseller, distributor or ESET office.
-
ESET Mail Security not processing all emails
Marcos replied to s_schwrz's topic in ESET Products for Windows Servers
I assume these emails are not sent from internal addresses, are they? Have you tried disabling the following options? - Use Exchange Server whitelists to automatically bypass antispam protection - Accept antispam bypass flag set on SMTP session