Jump to content

Marcos

Administrators
  • Posts

    38,002
  • Joined

  • Last visited

  • Days Won

    1,507

Everything posted by Marcos

  1. Rules are evaluated in the order as they appear in the list; ie. if a URL matches the first rule, the second rule won't be evaluated. According to your screen shots, the problem is using of wildcards in Web Control rules which are not supported. Please remove "*." from each URL. Should you use URLs with paths and not just the hostname, make sure that SSL filtering is enabled on clients as well.
  2. Did you add the whole url in the list of blocked websites or the hostname eu.attractionsonoahu.icu ? The latter should work, blocking the whole url not since SSL filtering is not performed on Mac.
  3. I would correct you in that it's not a bug, it's rather an issue caused by design of scanning SSL. The issue occurred after improving protection by extending the list of scanned HTTPS ports to all. Until recently, SSL communication was scanned only on the default HTTPS port 443 which, with the increase of malware utilizing HTTPS communication on other ports, started to pose a risk to users. If Chrome performed MitM on port 8009, then the extension of scanned ports naturally introduced the issue since AVs also perform MitM if they scan SSL communication of any application. The issue has been reported to ESET, we now know about it and a solution (I wouldn't call it a bugfix because of the reasones above) should be available some time soon.
  4. I was unable to reproduce it. If you switch to pre-release updates, do you get an empty notification? That what I tried and the notification about successful update was displayed alright:
  5. This detection is triggered if an ARP response about a particular IP address is returned from multiple devices, ie. when the MAC addresses are different. It could happen when multiple NICs are used in a server for load balancing for instance.
  6. The fix will be about a safe certificate exclusion so if you make a relatively safe exclusion now you won't have to wait for the exclusion added via an automatic module update.
  7. To my best knowledge, this is already on a wish list. Thank you for the suggestion.
  8. Thank you for confirming that the issue has been resolved. We do not close topics even if a solution was provided or found by users.
  9. Checked the logs but didn't find any obvious problem. A weird thing was that the system event log was basically empty, there were only a few events from yesterday. Then there was a couple of applications that might theoretically cause issues. If you can uninstall them, one at a time and then see if the issue goes away, try it: Winaero Tweaker RamCache III RAMDisk VirtualCloneDrive If nothing helps, try uninstalling ESET and installing v12.2.23 from scratch. Failing this, a support ticket will need to be created with your local customer care and the issue be investigated by ESET's engineers.
  10. For instructions how to collect ELC logs, please see my signature or FAQ on the right-hand side of this forum. Is this the only screen that doesn't look ok? If you select Update -> List of all modules, does the window populate with information about installed modules? Did you perform a clean install of v12.2.23 or it was upgrade from v12.1 or older? Did you reboot the machine after the upgrade?
  11. Please provide: - a screen shot or two of the troublesome screen(s) for clarification - logs collected with ESET Log Collector.
  12. Did you try the following? - with all browsers closed, disable SSL/TLS filtering and click OK - re-enable SSL/TLS filtering and click OK - launch a browser and check if the problem has been fixed.
  13. One thing is that ESMC can work without Internet access if you ensure that modules be updated occasionally and another thing is management of other license units than those covered by the imported offline license file. Moreover, when deploying ESET's products you will need to download installers elsewhere and copy them to a common share in order for software install tasks to work. Needless to say that some features / services, such as ESET Dynamic Threat Defense, cannot work without Internet access at all but that's an extra service that requires an EDTD license anyways.
  14. You can find it under Help and support: Alternatively you can drop me a private message with the registration email address or license key.
  15. Could you please provide a screen shot? Do you have the option to display update notifications enabled?
  16. Not sure if your license registration email address is different than the one you used for registration in this forum. I was able to find only a trial license for ESET Mobile Security registered to it but it's possible that you used a different email address to register your paid license. Please provide your public license ID.
  17. Of course, this is not possible. Otherwise any malware or unauthorized person could easily allow any blocked communication.
  18. Please provide: - a screen shot of a pop-up that you're getting - logs collected with ESET Log Collector.
  19. Do you have detection of potentially unwanted applications enabled and none was found during a scan?
  20. It happens that vendors don't provide an updated UEFI firmware without CompuTrace. In such case, the only solution is to exclude the pot. unsafe application from detection by the detection name as suggested in the KB.
  21. For more information, please refer to: https://support.eset.com/kb6567/ https://www.welivesecurity.com/2018/09/27/lojax-first-uefi-rootkit-found-wild-courtesy-sednit-group/ https://www.welivesecurity.com/wp-content/uploads/2018/09/ESET-LoJax.pdf
  22. Please see my comment here: https://forum.eset.com/topic/20056-eset-issue-with-sandboxie-persistent-holding-of-registry-keys/?do=findComment&comment=98359
  23. Do you have ESMC Agent installed on the server? Are there any errors in C:\ProgramData\ESET\RemoteAdministrator\Agent\EraAgentApplicationData\Logs\status.html or trace.log?
  24. ESET File Security is intended for file servers; it does not include a personal firewall.
×
×
  • Create New...