Jump to content

notimportant

ESET Support
  • Posts

    23
  • Joined

  • Last visited

  • Days Won

    1

Posts posted by notimportant

  1. 5 hours ago, LuisC said:

    So, that leads me to believe that the "suspicious application" is on my computer.  From the logs, it appears as though a connection is being initiated from my computer to retrieve a file

    No, there is nothing suspicious in your computer. You can see the detection described in screenshot, that you uploaded here: A suspicious application was found when Firefox tried to access a website.

    Detected object was file "initialized.js" located on that website. Connection attempt was terminated by ESET, so nothing was downloaded. 

  2. Ako bolo spomenute v predchadzajucej odpovedi, dany software je neskodny, ale agent, ktory pouziva, moze zneuzit malware alebo utocnik, ak by ziskal pristup na notebook.

    Uz sa o tejto detekcii popisalo pomerne dost, tu je taktiez nedavna diskusia: forum.eset.com/topic/33071-how-dangerous-is-eficomputracea/

  3. 2 hours ago, Joth said:

    No malicious files were dropped, no processes manipulated and functionality wise it works exactly as expected with no hidden processes running in the background. So again, I highly doubt that this is a trojan

    That doesn't mean it is not capable of dropping malicious files later.

    https://www.hybrid-analysis.com/sample/09430fa20aac3815ba456f4644f41b41073d4994e538797c172c10a19f825b35?environmentId=120

    MITRE ATT&CK™ Techniques Detection: This report has 10 indicators that were mapped to 11 attack techniques and 3 tactics

  4. Those 3 objects detected by KVRT.exe could be some harmless reg files or something similar that is not actual malware. It is not the first time I saw cases like this when comparing ESET to other AV vendors. Unfortunately without the samples that were detected this is another irrelevant claim. It would be great if you could back-up those claims.

    However I must mention that there are hundreds of thousands of new malware samples every day and its impossible that every AV will detect every new file and things like missing a sample will happen to ESET, it will happen to Kaspersky, and so on ... 😛 

  5. On 12/21/2020 at 11:13 AM, Gergo Adam said:

    I don't need to decrypt files, we have backups of the VM, I just want to provide some info to you to analyze and find a prevention for this ransomware.  

    encrypted file.zip 7.57 kB · 0 downloads efsw_logs.zip 4.08 MB · 1 download

    There are hundreds of warnings from ESET about exploiting RDP vulnerability since 30.11., so unfortunately RDP was unprotected once again.

    https://www.eset.com/fileadmin/ESET/SK/Tlacove_spravy/Whitepapery/ESET_RDP.pdf

  6. On 7/31/2020 at 11:39 PM, Eddie said:

    I have to close my Outlook client to stop this this threat detection alert from occurring every minute. I even selected "delete emails" under Advanced Setup as posted by ITMAN on June 17.

    We had similar cases where emails were repeatedly detected every few minutes. Please try to log in to your email via the web interface, search for the detected email and delete it manually.

  7. On 8/3/2019 at 1:21 PM, novice said:

    Seems like ".. the attacker most likely logged in as an administrator and paused or uninstalled ESET "  is the explanation of the day to justify ESET inability to protect against ransomware. 

     

    This is not an excuse. I see this all the time in the customers logs when brute force attacks are performed against RDP.

  8. On 1/31/2019 at 12:31 PM, Rami said:

    Is that backup includes the cache in the Browsers? , Did you check all of the apps that you have that none of them looks suspicious ?

    I don't know if ESET is available in iOS , if not try to use another scanner that is available on AppStore and let it deep scan your phone and see if it catches anything , maybe you could know the source of JS/Adware.Agent.AA

    There are no AV solutions for iOS. Every app runs in sandbox. 

  9. When " Chrome told you "ESET Security may cause Chrome to not work properly" " it doesnt mean crash was caused by ESET itself. This behavior has been answered here already: www.bleepingcomputer.com/news/google/google-chrome-showing-alerts-about-incompatible-applications/   and also here:  forum.eset.com/topic/16362-update-or-remove-incompatible-applications-in-latest-google-chrome-for-eis/

×
×
  • Create New...