Jump to content

FRiC

Members
  • Content Count

    30
  • Joined

  • Last visited

Profile Information

  • Location
    Thailand

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. In case anyone runs into this problem in the future. The reason was that Windows Defender Antivirus was disabled by GPO. It had always been disabled so maybe something in Windows 10 changed recently. Changing the policy to Not Configured fixed everything.
  2. Sorry, the machine wasn't rebooting by itself. I was rebooting it manually to see if the problem would go away when I changed settings (regional format mentioned above). The computer also got shut down at the end of the work day. I could run the log collector on another computer if necessary.
  3. @JozefG Hi, the ESET Log Collector log is over 100 MB so I've uploaded here. If there's an alternate file transfer site I should use please let me know. Thanks.
  4. @JozefG Do you mean it's just a display issue in Windows Security Center? EES seems to be working fine otherwise. I would've never noticed the issue if I had not sat down at a user's computer on a completely unrelated issue and happened to see the red cross on the WSC tray icon.
  5. @Marcos Yeah, we're based in Southeast Asia and it's Buddhist year 2563 here. The date format is set by regional format and if I change the format to English (US) the date automatically changes from 28/10/2563 to 10/28/2020. Just to be sure I tried changing regional format but the problem persists. @JozefG ETL files attached. Thanks. ekrn.zip
  6. Hi, it appears integration module is at 1026.1. Security providers says ESET Security is turned off. I tried restarting some of the computers experiencing this issue and it seems to come and go randomly. I'll check on more computers.
  7. I noticed today that some of our computers are showing no virus provider in Windows Security. EES is current 7.3.2041.0 and there's nothing obvious in ESMC or in the logs. It seems random since all of our computers are domain joined Windows 10, Version 2004 and there doesn't seem to be anything special about the ones that are showing this warning. Anyone seeing anything like this? Thanks.
  8. We use deployed Windows and I've noticed the same thing. It also happens if Windows is updated to a new release and before the user logs in. Edit: I just noticed this recently, so not sure if this is something new. Another new thing I noticed is that it's now harder to drag computers into another group since the group panel scrolls too early and too fast.
  9. Or you could probably block all by default, and create five policies (USB1-5) and assign to each PC which ones are needed.
  10. That's Windows 10 fast startup. Disable it in settings or in GPO to make shut downs behave "normally".
  11. I think the release notes for 7.3.2032 should read compatibility with future Windows 10 major update due in H1 2020 and not 2021.
  12. Not sure if related, but I'm upgrading to 7.2.2055 and suddenly the clients are trying to access ESMC by the IP address instead of the hostname and yeah, they blocked themselves again. I tried whitelisting *:2222/* and it seems to work so far. 🤞
  13. Thanks for the quick response. I had these computers configured this way since we bought ESET early this year and this issue only started recently. Strangely enough they didn't all start happening on the same day and it didn't affect all computers. Anyway I've added https://esmc to the whitelist and temporarily disable EES... Update: and all is well now. I just find it somewhat strange that I've been running this for nine months, and now suddenly I have to whitelist https://emsc/
  14. Windows 10 Pro, ESET Endpoint Security, ESMC, all latest versions. I have some computers that have all websites blocked except for some necessary Windows update and ESET update sites whitelisted. They connect to the local ESMC server called simply "esmc". A few days ago I noticed they stopped connecting to ESMC and upon checking the logs I discover that https://esmc is blocked. Has there been a change to how ESET communicates with ESMC? Should I whitelist the local ESMC server?
  15. Update to this issue: I couldn't figure out the problem, so I just created a rule to whitelist the HDD. I noticed afterwards that the HDD appears to Windows as a removable device, i.e. it has a removable icon in the task bar and can be removed like a USB drive, even though in the device manager it appears as a normal HDD. Which is probably why ESET sees it as a removable device and tries to block it, but since the first partition is the boot drive and likely can't be blocked, it ended up blocking the second partition.
×
×
  • Create New...