Jump to content

Marcos

Administrators
  • Posts

    37,013
  • Joined

  • Last visited

  • Days Won

    1,469

Posts posted by Marcos

  1. I don't have Logmein installed. If I disable HIPS do you think that may be enough? I don't want to disable the Self Defense mechanism though since it would make it easier for Malware to disable NOD 32. I will try disabling HIPS, and see if that helps. If not I will rename ehdrv.sys as you have suggested. Sometimes I forgot NOD 32 has HIPS since it never ask me to allow or deny anything.

     

    Since we don't know whether it's HIPS or Self-defense causing the issue, try disabling each, one at a time. If that doesn't help, disable both. If that doesn't resolve the issue, try renaming the above mentioned driver in safe mode. Note that this needs to be done in order to narrow the issue down, I don't suggest it as a permanent "solution" for the issue.

  2. Can you add an option when threats detected it put this option (Delete,Clean, and No action) which applies for all detected threats

    for example I did scan and found about 500 threats, some of them cleans automatically and some needs a user choice (and which needs user choice <Delete, No action> is more that which cleaned automatically which about 400

     

    so I'm forced to change every threats from <No Action> to delete and that's boring

     

    It is mentioned in the action selection window that multiple items can be selected at once, e.g. by pressing Ctrl+A.

  3. ESET is actually quite strong when it comes to ransomware detection. Of course, no security software offers 100% detection of malware, however, ESET uses mechanisms so that detection for newly emerging and unrecognized variants is added in the next update. If ransomware has made it to a computer and detection was added afterwards, the following procedure should work to clean it out:

    - turn off / on the computer or restart it 

    - after Windows starts, wait about 5 minutes so that the latest update is downloaded and a startup scan is run (even if the ransomware is active and blocking the screen and other actions, the process of updating and cleaning will be run in the background)

    - turn off / on the computer

     

    I'd also suggest trying v7 beta which has been running smoothly and only minor issues have been reported. It features Advanced memory scanner which helps to protect against zero-day malware, Vulnerability shield to detect and block attempts to exploit known system vulnerabilities and one more new feature to improve malware detection even more. That said, it will be much stronger than its predecessors v6, v5 or older.

  4. After using Eset Smart Security 6 and 7 beta both detected 109 threats after choosing "delete" only move 18 of them to quarantine and others let them free, tried that many times and same happening

     

    PS: both version was up-to-date

     

    Now switching to another Anti-virus, and I hope that you would do better in v7 full version.. Eset really needs a better improvement

     

    You must have made something wrong. If a threat is detected, there will be no problem to delete or clean the file providing that Windows or another application isn't using the file exclusively. Please create a new topic where we can troubleshoot it further. Although there's still room for improvements, ESET products are one of the best in terms of detection and performance.

  5. Just to make it clear, with a guest account you don't use any password to log in to this forum so using the password recovery feature makes no sense until you create an account. Authentication with a username and password is required only for registered users.

     

    If you created an account and now report this as a guest because you couldn't log in, please supply me with your registered username so that I can check the status of your account.
     

    So the web site is making a call to a java or c script file and there is a virus attached to it? Most web sites make calls to "external' scripts, that is a broad and generalized response we're not finding useful.


    Yes, there's a line in the source that loads a java script from another url. Also the script is bounded with typical malware markers.

     

    As for reporting blocked URLs to ESET, there's a section in the above mentioned KB article called "Email – Report a blocked website or false positive" towards the end of the article with simple instructions how to proceed.

  6.  

    Hello, Nod32 Support Team!
    My name is John Williams and I represent generalfiles.org service.
    We found that our search service is placed into Nod32 black list as dangerous site. 
    General Files is just the search engine (like Google), through popular file hosting websites and direct links. We convinced that our search service is virus free and safe for our users. 
    According to this we would be glad if you remove generalfiles.org from your blacklist, thanks. 

     

     

    The block seems to be ok. The website is full of adware and several other vendors are blocking it, too.

  7. What was the point of giving me the following information fir Eset activation?  P4m1936duw1983.

     

    Eset to re install EAV-XXXXXXXX with a password provided.

     

    Don't know what P4m1936duw1983 is as it's definitely not the password belonging to the username you've mentioned. Software is activated automatically after entering the username and password in the product. I've checked your license and there doesn't seem to be anything wrong with it; it's valid until June 2014. Are you having problems receiving updates?

×
×
  • Create New...