Jump to content

Leonardo

Members
  • Posts

    97
  • Joined

  • Last visited

  • Days Won

    1

Posts posted by Leonardo

  1. 17 minutes ago, Marcos said:

    This file was sent to LiveGrid, ie. access to it was not blocked. It could be that the file is either trusted or has already been submitted to LiveGuard before and was evaluated as clean. ESET Log Collector logs could shed more light.

    Thanks @Marcos

    OK but my main problem is to understand why and event listed in "Events" logfiles was not listed in "Files sent" logfiles ?

    I think that "ESET Log Collector logs" are necessary for the support but I don't know how I can collect it ?

  2. 16 minutes ago, itman said:

    Assumed here is the LiveGuard did not complete its cloud scanning activities within the ESSP LiveGuard default scan time limit of 5 mins.. In this instance, the file will be unblocked after 5 mins. and no safe Event log entry will be generated.

    You can increase ESSP LiveGuard default scan time limit.

    Thanks @itman

    As you mentioned the time limit value in one of your previous posts I had yet tweaked it at 30 minutes.

  3. 6 hours ago, Marcos said:

    You won't receive any notification unless you attempt to run a file that has been submitted and is temporarily blocked.

    Thanks @Marcos

    I tried to run a file and I got the "has been submitted" notification and after some minutes the file was unlockednot but I did not receive any notification mentioning "safe file" notification.

    Another concern for me, when I look at logfiles, "sent files" only shows an old event but "Events" shows the current event (file sent and analysed by LiveGuard). Is it normal or an issue on my ESSP ?

    1.thumb.PNG.105ac266c7828d0097b2ae079229acd6.PNG2.thumb.PNG.08a4f1b8cdd34dd6cce4251fc7261414.PNG

  4. 2 hours ago, Nightowl said:

    You are welcome :)

    In the downloads page of the product you want ,it's always there for example like here for Internet Security:

    https://www.eset.com/int/home/internet-security/download/

    If they don't appear for you , click Advanced Download on your right side.

    Hi @Nightowl  , thanks but I'm not searching the download link because EIS is yet installed on my PC 😉 I'm searching what are the changes in the new version...

    7 minutes ago, itman said:

    Here's a complete article on Eset's RDP bruteforce blocking; https://www.welivesecurity.com/2020/06/29/remote-access-risk-pandemic-cybercrooks-bruteforcing-game/

    Of note in this article is the non-Eset based installation best practices that also need to be implemented.

    Thanks @itman for this very interesting article.

  5. 58 minutes ago, Marcos said:

    Since you are in the official ESET forum, you can expect the only answer :) Honestly, you won't go wrong with ESET, just purchase ESET Internet Security or ESET Security Premium which provide additional features, such as RDP bruteforce blocking. ESSP also provides a password manager and disk encryption features.

    Hello @Marcos

    Where can I find all the differences between ESET IS and ESET SSP. 

    Here https://www.eset.com/fr/#compare I don't see anything about "RDP bruteforce blocking".

  6. 22 hours ago, MatG-DK said:

    Chrome build 76.0.3809.87 Flags Eset Security and suggest it to be removed, Why? 

    This is not the first time and i believe that it may cause some BSOD sometimes. 

    Are you guys not talking together?? Google/Eset

    Chrome Eset.jpg

    Hello,

    My Chrome is Version 76.0.3809.100 (Build officiel) (64 bits); so are you  using a beta ?

    I don't have any message from Chrome for removing ESET IS...

  7. 2 hours ago, Marcos said:

    According to the info I've found, it's supposedly a potentially unwanted application from 2016. It's described as: The application is a communications application that allows users to have remote access to or direct contact with an IT consultant over the internet. When installed, it creates a service and runs in the background. It automatically sets up a bind connection and listens to the local port 5001 for incoming connections in order to provide remote access. When the user attempts to uninstall, the application is reinstalled and maintains its persistence even when the user tries to end the application.

    Hi @Marcos 

    That's very interesting. 

    Is there a way to get rid of this virus/PUA ?

    What is the level of dangerousness of this virus/PUA ?

  8. Hello

    I'm using ESET IS 12 with Windows 10 pro.

    I was connected on the following site: https://www.isotoner.fr/checkout/onepage/success/ and I received an alert from ESET:

    1.PNG.f66a5b7341eb451d9127694a0cfc770e.PNG2.PNG.402fbad60f1ce5b47e1c7c572a3f0a47.PNG3.PNG.fe768968dc8fd211cd92f221f1c8adfb.PNG4.PNG.ff33886f0fca143d37d4892cb13f6e8e.PNG

     

    I decided to block the communication but I think that this shopping site is safe.

    I was not able to find the trace of this block on ESET logs

    What can I do ?

    Thanks for your help.

×
×
  • Create New...