Jump to content

sky7

Members
  • Posts

    96
  • Joined

  • Last visited

  • Days Won

    2

Everything posted by sky7

  1. No. Your router (Netgear D6200) that has SPI and NAT capability and windows firewall are good enough. just my 2 cents
  2. 2015 Mar. - Kaspersky Lab Russian spy link 2015 Aug. - Russian antivirus firm (Kaspersky lab) faked malware to harm rivals Whether it's true or not, Kaspersky Lab's reputation is damaged. Interesting point is that media hits Kaspersky lab without solid evidence Of course there is no solid evidence this time again. I could see two facts. Kaspersky Lab is the Russian antivirus firm and Kaspersky lab has published government grade malware reports. I hope that media provides clear and solid evidence first.
  3. [2013] Spy agencies reportedly have a long-standing ban on Lenovo PCs due to back-door vulnerabilities [2015 Feb] Lenovo's Superfish security snafu blows up in its face After 6 months Lenovo used shady 'rootkit' tactic to quietly reinstall unwanted software CAUGHT: Lenovo crams unremovable crapware into Windows laptops – by hiding it in the BIOS If someone is making same mistake again and again... this should not be called a mistake. Hardware-level backdoors are undetectable. It's sad... hardware has become major concerns for security.
  4. FYI: hxxp://kb.eset.com/esetkb/index?page=content&id=SOLN3204 I remember that Ashampoo software contains adware/pup Anyway It's up to you.
  5. The security vendor is Qihoo 360 hxxp://www.av-comparatives.org/weblog/wp-content/uploads/2015/04/VB-AVC-AVT-press-release.pdf
  6. Kaspersky Internet Security F-Secure Internet Security Emsisoft Anti-Malware They are all light, reliable and quality software
  7. 2015 edition Kaspersky Internet Security, Norton Security, F-Secure Internet Security and ESET Smart Security They are all fast and light on system resources and it's hard to notice performance degradation I'm surprised that ESET product is considerably slow down the copying procedure. Quality control is also important factor. Fixing bugs after complaints in short time, good quality database and module updates.(bad updates easily slow down or mess up user's PC) I don't know why some vendors don't fix bug or compatibility issue in short time after users' complaints. Anyway It's good to read AV-TEST - Endurance Test.
  8. Windows 10 is a free upgrade for all 7 and 8.1 users Microsoft made a good decision this time.
  9. www.torch.com? Is it www.torchbrowser.com? Anyway I don't recommend to use Torch Browser. It is bundled with PUA
  10. That is something wrong. Those exe files must be unknown (orange) even if somebody had scanned them. See editplus.exe (it's one of well-known text editors for windows) It's still unknown classification. (more people are using it and more people had scanned it) Of course editplus.exe is clean file and I don't care it's still Unknown(orange) classification but if new/unknown malware files are green(definitely clean (whitelisted) and will be excluded from scanning) That is a problem.
  11. Maybe it's ESET Smart Security's Protocol filtering issue Try this. 1. Setup -> Enter advanced setup 2. Web and email -> Protocol filtering -> Excluded applications Check "iTunes.exe " 3. Web and email -> Protocol filtering -> Excluded IP addresses Add your local IPV4/IPV6 subnet.
  12. ESET Smart Security detects Winzip 19 installation file "a variant of Win32/InstallCore.TS potentially unwanted application" ESET did good job again for PUA detection. Anyway I'm surprised that Winzip 19 didn't ask for PUA(potentially unwanted application) installation and just install SupTab under C:\Program Files(X86)\SupTab folder (SupTab.dll, SearchProtect32.dll, SearchProtect64.dll...etc) and WindowsMangerProtect. I downloaded the installation file from the official WinZip website and WinZip looks like more than just PUA now. I don't like to believe WinZip 19 is malware but Has anyone had same experience as I have? WinZip file: hxxp://download.winzip.com/nkln/winzip19-home.exe virustotal result: https://www.virustotal.com/en/url/3ba045dd96790aebd63a78abf5ee70afdfdd623e5f43526e1ef498a8829d762b/analysis/1420087189/
  13. I sent a file and url info twice but you don't have any file with the given MD5 in you system? It's really strange.
  14. I reported and submitted url + file to samples@eset.com 3 days ago ESS 7.0.317.4 (vsd: 10915) still doesn't detect this malware. I have had a similar experience. After I post here ESET detects submitted malware finally. I'm not happy with this. I also submitted this malware file one of 15 and they reply to me in 3 hours. Of course they detect this malware. https://www.virustotal.com/en/file/6673a85b89687ae2edda760bf201b0e9835d180da52095d4d1bfec900658b515/analysis/
  15. You can use ESET Smart Security activation code to activate ESET NOD32 Antivirus but you cannot use ESET NOD32 Antivirus activation code to activate ESET Smart Security.
  16. Update: Viber has contacted Neowin with some clarifications on the matter: Viber software reports that an installation is complete. As I'm sure you know, every installer reports that. Eset says Viber has a toolbar. As we've previously stated, Viber does not and has never had a toolbar. Therefore we stand by our original comments and request that Eset stops blocking Viber unnecessarily. - hxxp://www.neowin.net/news/viber-calls-out-eset-for-flagging-them-eset-responds-with-a-digital-uppercut Viber is an well known instant messaging and Voice over IP (VoIP) app (Android, iOS, Mac OS and Windows..etc) I'm disappointing Viber's response because there is no clear explanation about Viber installer's source code. It doesn't matter Viber have a toolbar or not. Their source code is really matter. Transparency and privacy are important.
  17. Amnesty anti-spyware app tells you if the government is watching you Well known antivirus software are still not enough? Amnesty has released anti-spyware app finally.
  18. CCleaner is bundled with toolbars (PUA bundled) Make sure you download directly CCleaner Slim edition from official website Piriform.com ( https://www.piriform.com/ccleaner/builds ) and If you use FileHippo or CNET download sites there is possibility of misleading by advertisements. [FYI] 1. PUPS are Persistent: https://blog.malwarebytes.org/malvertising-2/2014/07/pups-are-persistent/ 2. Beware! FileHippo tests adware distributing download manager: hxxp://www.ghacks.net/2014/07/08/beware-filehippo-tests-adware-distributing-download-manager/ PS. They added Active System Monitoring for Free users since CCleaner v4.18.4844. I think that it is just purpose of marketing. Options -> Monitoring You can disable System Monitoring and Active System Monitoring just my 2 cents
  19. I did manual update and got VSD update (10445) finally. This is not good. Users keep clicking "Update now" button and check/make sure Up-to-date protection level. Interesting thing is that ESET releases only one VSD(10445: Sept 20) today. (usually 3 VSD updates a day in weekend)
  20. "Microsoft strongly recommends that customers who have not uninstalled the 2982791 update do so prior to applying the 2993651 update. Customers do not need to uninstall the expired 2982791 update before applying the 2993651 update; however, Microsoft strongly recommends it. Customers who do not remove the expired update will retain a listing for 2982791 under installed updates in Control Panel." Microsoft must be automated this process in the fixed update for users. Today there are many reports about Windows Update Error code 80246002 Nice(?) job again. [update] Windows Update Error code 80246002 potential fix Change DNS servers to 8.8.8.8 and 8.8.4.4 (it's Google Public DNS)
  21. Some Windows 7 PCs bricked by Microsoft after faulty Patch Tuesday update Microsoft pulls updates, recommends uninstall again and again...
  22. Maybe data based on ESET's Live Grid. Sometimes facts can be misleading. I don't undervalue ESET Live Grid and don't want to argue about that. Anyway that's not true. Most well known AVs detect this malware at this point so we don't need to say it's dangerous 'now'. "The malware wasn't found to be running on any computer worldwide at all." It would be misleading These days Cybercrime used to silently spread malware to computers for only number of days within a very short period of time (making hit-and-run guerrilla style attacks) It is 'Trojan Dropper' that drop other malware files onto the compromised PC.
  23. It was first delivered by email to ESET's malware lab just yesterday. It's strange. ESS 7.0.317.4 (vsd: 10240) detects xss.exe (MD5 : 5bf42a43f4efc10c0fdf9f0a0379ee3e) finally. Threat name is "Win32/TrojanDropper.Agent.QRL" It's not fast dealing (passed more than 6 updates Virus Signature database) Unlike before, I don't receive any email from ESET Malware Response Team. I always receive email from ESET Malware Response Team (as you know they send email when they add reported threat in vsd.) Anyway ESET detects this malware now.
  24. It's good ESET doesn't just look at packer but I reported this 2 days ago and my second email was sent 21 hours ago and of course it is functional malware - xss.exe MD5 : 5bf42a43f4efc10c0fdf9f0a0379ee3e
×
×
  • Create New...