Jump to content

Shafiq

Members
  • Posts

    96
  • Joined

  • Last visited

Everything posted by Shafiq

  1. ESET endpoint security 6.6.2052 ERA 6.5 Users OS: Windows 8.1 and Windows 7
  2. Hi There, We are facing issue with the endpoint security. We are seeing Web control, Web access protection , anti-phishing protection non functional, message on client pcs. We have install Endpoint protection remotely using ERA web console. Most of PC after installation do not have issue but some pcs are reporting this issue. When trying to enable web control feature, we are getting disabled permanent option.
  3. In ERA web console, Threat tab shows threat detected but action taken is blank (nothing ) this threat, when checked in detail shows that it has been quarantine. My question is when a threat is in quarantine folder why cant there be any message which indicate this has been taken care, as we see when threat is deleted or cleaned by deleting. Having indication (message) on action column will reduce manual work going to the threat detail and checking if its in quarantine or no. Below is the Threat detected (unwanted safe application) and we have strict policy to clean for unwanted and unsafe application. Hash: fb845860d148779bdf4df7a6afdb0d4aa2d89b8e Threat Name: Win32/Bundled.Toolbar.Ask.N Hash: b7ce5c35f14ff4786678c705058f5d31010c9c66 Threat Name: Win32/Bundled.Toolbar.Ask.N Thanks.
  4. Thanks Akbar and Marcos for the replies. I used Interactive mode of firewall and accessed the application, got the prompt to allow file "system". After allowing this file, there was no block to the application. what i saw in this rule was, local application was "system" and remote IP was the computer IP where i was trying to access webapplication. @Marcos Sure i will follow your instruction also when this issue come again. Thanks, Shafiq
  5. Forget to mention. We do not see block event in troubleshooting wizard.
  6. ESET Team please help us to resolve this issue, now we are noticing other users not able to access web application even though IP address is in trusted zone. There was no issue earlier, it only started from last Friday. Please help. Thanks
  7. ESET Firewall is blocking local application. One of the client workstation (user A) running local web application and it is listening on port 5001 and another user (User B) trying to access the application on port 5001 from his PC. I have allowed firewall rule for port 5001 on Both direction, and ip addresses of of this two users are also in trusted zone also. When the firewall is active, user B cannot access user A local application from his PC, When firewall is inactive user B can access same application. Users are trying to access the application using IE and Google Chrome. For testing purpose I even created the rule to allow services W3SVC world wide web. But this did not help. Firewall rule to allow port 5001 is at the top of the rules. ESET endpoint security 6.6.2052 ERA 6.5 Users OS: Windows 8.1
  8. The user is doesn't not allow me to run manual on demand scan from his PC, i'm running scan from remote ERA. below is the message action error, The scan is completed from ERA Action error: action selection postponed until scan completion Below is the hash value of Threat name: Win32/PriceGong.A . This was deleted by ESET but it keeps coming. Is this because new cookie getting downloaded from IE when user start using IE. Hash Value: 3e694845dc53f08ac299ca23da974c55f4b62e20 b5c93da0c608b26c9487abc49ccb643c9a15ed33 Thanks
  9. Potentially unwanted application Win32/PriceGong.A not getting deleted by ESET. The computer which is reporting this problem is having strict clean policy for real time scan and on demand scan. i have scan pc with in depth scan with strict cleaning. location :file:///C:/Users/AppData/Local/Temporary Internet Files/Content.IE5/800AVLTB/{5E1360DC-8FA8-40df-A8CD-FC3831B3634B}[1].cpi/3.6.12\bin\PriceGongIE.dll Windows 7 ESET endpoint security: 6.6 Engine detection: 16444 (20171121) Threat name: Win32/PriceGong.A Thanks
  10. If a file deleted by ESET during virus scan, can that file will be in quarantine folder, in case if it requires to recover that file if is it is from legitimate software? Thanks
  11. HI Michal, The agent wasnt communicating with the ERA server. Once i reinstall the agent and communication happen.. ERA was able to upgrade. Your hint on Agent helped me resolved the issue. Thank you.
  12. I only want to upgrade ERA server and Web console on Internal ESET antivirus server. scheduling is ASAP
  13. Hi There, I’m facing the issue with the firewall rules in automatic mode from ERA console. I created the rule to allow inbound traffic for certain port number. After creating the rule in ERA console I saved the configuration and log out. When I recheck rules, rules were disappeared. Same with trusted zones, the IP address wont be there. When the same rules created or trusted zone on client machine, the rules will be present but from ERA server, it just wont work. There is one more issue, I cannot upgrade ESET components from ERA console from client task, task will be in planned state even after 2 days. When the trigger was ASAP. Thanks! Server: Windows server 2012 R2 64 bit ESET ERA server version: 6.4.295.0 ESET ERA web console version: 6.4.281 update module 1069 (20161122) Translation support module 1636 (20171010) configuration module 1526.5 (20170926) sysinspector module 1269 (20170321) Thanks!
  14. Marcos or anyone from ESET help me on this issue please.
  15. Hi, I have initiated the task in ERA, to upgrade ERA from 6.4 to latest 6.5 ERA. I have run the task from Admin ->client task -> Remote administrator components upgrade. The task is still in planned state even after 20 hours. Can you please help me to resolve this issue. Server: Windows server 2012 R2 64 bit ESET ERA server version: 6.4.295.0 ESET ERA web console version: 6.4.281 ************************************ update module 1069 (20161122) Translation support module 1636 (20171010) configuration module 1526.5 (20170926) sysinspector module 1269 (20170321)
  16. HI Marcos, Client starting to work properly. Thanks.
  17. Hi There, We are getting "Module updates failed" undocumented serious error (0X210a) when try to update virus signature. I have activated license using off-line key option. ESET shows product activated. This computer connects to the Internet and not managed by ERA. second issue: Another PC managed by ERA and updates through internal ESET server gives error "Module update failed" Product: ESET Endpoint security 6.6 ERA: 6.4 Thanks!
  18. Issue seems to be resolved, after changing internal network. Thank you
  19. And When we try to push agent installation from ERA we are seeing below error in Execution details GetFile: Failed to process HTTP request (error code: 20019, url: 'hxxp://repository.eset.com/v1//info.meta') Repository is in green and we can download file “info.meta” when we open url hxxp://repository.eset.com/v1/info.meta
  20. We restarted computers but virus update failed. Client connect to the Internal ESET server for virus update as most computer do not have internet. We tried to upgrade ERA from ERA console from 6.4 to 6.6 but it did not work as it is in planned state even after 2 days (execution was set ASAP). This is the error we notice in folder C:\ProgramData\ESET\RemoteAdministrator\Server\EraServerApplicationData\Logs 017-10-22 08:25:07 Error: NetworkModule [Thread 854]: Receive: NodSslWriteEncryptedData: Incorrect/unknown certificate or key format., ResolvedIpAddress:::1, ResolvedHostname:localhost, ResolvedPort:61590 2017-10-22 08:25:07 Error: NetworkModule [Thread 854]: Protocol failure for session id 441, error:Receive: NodSslWriteEncryptedData: Incorrect/unknown certificate or key format. Receive: NodSslWriteEncryptedData: Incorrect/unknown certificate or key format., ResolvedIpAddress:::1, ResolvedHostname:localhost, ResolvedPort:61597 And we do not see Virus updates getting downloaded on internal ESET server on folder C:\ProgramData\ESET\RemoteAdministrator\Server\EraServerApplicationData\Data\updates\updfiles
  21. Hello We are facing issue with virus update with error “internal server error” and when we checked the logs, this is the error “CUpdatesModule [Thread b6c]: PerformUpdate: Module update failed with error: Internal server error. (error code 8452)” in trace logs in agent folder (C:\ProgramData\ESET\RemoteAdministrator\Agent\EraAgentApplicationData\Logs) ESET endpoint security 6.4 ERA 6.4 Please Help Thanks!
  22. Can anyone from ESET reply to this. Now even firewall configuration got affected. Please help.
×
×
  • Create New...