Jump to content
An upgrade will take place on June 18, 2024 during the midday hours (UTC). The Forum will not be accessible for a short period of time. ×

Marcos

Administrators
  • Posts

    36,872
  • Joined

  • Last visited

  • Days Won

    1,464

Posts posted by Marcos

  1. After changing the cleaning mode to "No cleaning" in the Web access protection setup, I was prompted for an action and was able to choose between Disconnect and No action. Anyway, I wouldn't recommend disabling automatic cleaning because:

    1, ESET is known for extremely low number of false positives and even in the event of FP you can still restore it from quarantine. 

    2, you'd have problems cleaning ransomware without using a rescue medium if gui could not display an action prompt window due to malware.

  2. See hxxp://www.eicar.org/85-0-Download.html. Given that ESET has extremely low rate of false positives and utilizes mechanisms to prevent false positives on prevalent files, I'd strongly suggest leaving the cleaning mode set at the default level (also it's possible to restore detected files from quarantine). Otherwise you may end up with malware locking your computer without being able to select an action upon detection.

  3. I, for one, would not run a full disk scan more than once per month as there's not much sense in it. The scan is a time and resource consuming operation. Given that real-time protection protects the user from running threats in archives, too, I don't see much sense in running on-demand scans frequently. Needless to say that there are startup scans run after each update and computer startup.

  4. Please carry on as follows:

    - download ProcDump from this link and run it so that the executable procdump.exe is extracted

    - reproduce the crash

    - with the Windows Error Reporting message on the screen, run "procdump -ma egui"

    - compress egui.dmp and supply it to Customer care for analysis.

  5. hi marcos

    hips loglarını  gönderdim . destek takımına 

     

    Unfortunately, the SysInspector log didn't contain information about installed modules so we assume it was created by an old version of SysInspector. Please do the following:

    1, copy & paste the information about installed modules (tray icon -> About)

    2, with HIPS 1078 installed, disable Self-defense while leaving HIPS enabled. Does the problem persist after a computer restart?

  6. What about writing what threats Eset has found, as Janus and Macos suggest, so we can become a little wiser!

     

    I second that. According to my personal observation of the data we work with, ESET is very often the only AV solution from among the well known AVs to protect against newly emerging threats and threat variants.

  7. The software in question is not detected as malware (ie. virus, trojan, etc.) but as a potentially unwanted application (PUA). The software was analyzed in ESET's malware research lab and was found to meet criteria for PUA detection. Detection of PUA is fully optional and it's up to the user if they want to opt for detection or not. Even with PUA detection enabled, the user can exclude the application from scanning so that it's not detected.

    Having said that, we'll draw this thread to a close.

  8. Please enable logging of blocked operations in the advanced HIPS setup, reproduce the problem and then supply us with your HIPS log. Also post information about the operating system, platform (x86/x64) and modules that are installed when the issue occurs and when it doesn't as there a chance some other modules were rolled back as well. According to the engineers, HIPS 1078 has some features disabled which might slightly affect the performance.

×
×
  • Create New...