Jump to content

stackz

ESET Insiders
  • Posts

    408
  • Joined

  • Last visited

  • Days Won

    19

Posts posted by stackz

  1. On 1/19/2018 at 11:27 AM, stackz said:

    I have no rule for the hosts file, furthermore I've just tested with a complete fresh uninstall/reinstall of EIS and Smart mode still doesn't trigger for writes to the hosts file.
    If I create a rule for write access to the hosts file then this is being successfully triggered.
    How can I troubleshoot the issues I'm having with HIPS?

    Win 7x64, EIS 11.0.159.0

    Does anyone have any ideas? I submitted a support request to ESET customer service but so far this has been met with deafening silence.

  2. 9 hours ago, Marcos said:

    Couldn't it be that you have a custom rule for hosts created that would override asking you about an action?

    I have no rule for the hosts file, furthermore I've just tested with a complete fresh uninstall/reinstall of EIS and Smart mode still doesn't trigger for writes to the hosts file.
    If I create a rule for write access to the hosts file then this is being successfully triggered.
    How can I troubleshoot the issues I'm having with HIPS?

    Win 7x64, EIS 11.0.159.0

  3. 4 hours ago, Hydro said:

    However, when choosing "Create rule and remember permanently" -> "Deny", the application is still able to access the internet! A valid Deny rule will be created, but it is ignored the first time! Subsequent connections are refused, as expected.

    I am able to reproduce this behaviour in interactive mode.

    Win7x64

    EIS 11.0.159.0

    Firewall module 1372 (20171027)

     

  4. 8 hours ago, itman said:

    One issue I have in regards to the cmd.exe is that there is no way to restrict what .bat files it can execute. A "target" in a HIPS rule has to be an application - period. This could be accomplished if the HIPS provided a read restriction in the Files section. I really don't know why read restriction capability was never added. Every other HIPS I have used in the past had the capability.

    Having read restriction capability in the files section is a feature I suggested long ago. Hopefully ESET will finally see the merits of this.

  5. 19 minutes ago, Marcos said:

    Please provide more details as I have no clue what kind of logon you mean.

    Win7x64 using v 10.1.230.0

    When I boot the computer and log into my account, a command window flashes on the monitor seemingly as EGUI loads.

    Rolled back to 10.1.219.0 and no more cmd window at logon.

  6.  

    Most likely there's an issue unrelated to ESET with registration to WSC. Does running "ecmd.exe /registerav" from the command prompt run from the ESET install folder as an administrator ? If it doesn't help, try running "ecmd.exe /registeravsoft" and restart the computer. If that doesn't help either, we'll need a log from Process monitor from the time when you run "ecmd.exe /registerav".

    I'm sorry, can you give me more details on how to do that, please?

     

     

    Right click Command Prompt and Run as administrator.

     

    At the prompt enter:

    cd "%ProgramFiles%\ESET\ESET Internet Security"

    Adjust the above command if EIS is installed to a different directory.

    Once the prompt is at the installation directory, enter the commands given:

    "ecmd /registerav" or "ecmd /registeravsoft"
×
×
  • Create New...