BrianMorris
-
Posts
49 -
Joined
-
Last visited
Kudos
-
BrianMorris received kudos from Faizan in Info on which website caused Eset to take action
Marcos,
I probably wasn't clear enough! Here is an example alert. I want the URI to be included in the email alert. It's not an option to be included in the alert. This is the info that ESET generates (pic).
-
BrianMorris received kudos from LesRMed in Is it possible to turn off the yellow warning?
This is a great comment. It would be really great if it would just alert me if I had an overage, but it permanently has this warning for when I’m using the correct amount.
-
BrianMorris received kudos from Ufoto in Feature request! Allow URI to be added to Notification emails
Valid point. You could address this by changing the HTTP to HXXP for the purposes of these notification emails.
-
BrianMorris received kudos from Peter Randziak in Potentially unsafe application detected on UEFI
here’s an interesting comment:
https://www.dell.com/community/Virus-Spyware/UEFI-infiltration-found-by-ESET/td-p/6191946
”CompuTrace is a commercial product that is embedded into firmware to help people recover stolen laptops. Doing that requires it to exhibit some virus-like behavior, such as phoning home, and it can also be used to remotely wipe the system since some companies might want to do that if their laptops are stolen. But before you can do any of that, you first have to activate your system's CompuTrace instance. Dell includes the actual application in the firmware, but it doesn't do anything until it's activated. If you haven't yet activated it, you also have the option of deactivating it, but if you do that you will NEVER be able to reactivate it. And if you've already activated it, I believe it can never be fully deactivated.”
-
BrianMorris received kudos from Peter Randziak in The system is busy due to many simultaneous user actions and may be less responsive
I saw that last year occasionally when CLOUD was new to me. I haven't experienced that in the last 6 months.
-
BrianMorris received kudos from damtechmatt in Dynamic Threat Defence Status
This was a HUGE problem for me. Here's how I solved for it:
I created a Dynamic Group Template - see the pic for hints on how to set it up.
I then created a Dynamic Group inside my Static Group of clients with the EDTD license. I set that Dynamic Group to notify me if the Dynamic Group changed.
Reply if you need more details!
-
BrianMorris received kudos from FRiC in Dynamic Threat Defence Status
BTW, I may need to change this up with the EDTD name change:
https://help.eset.com/elga/en-US/overview.html
On March 23, 2022, ESET Dynamic Threat Defense was re-branded to ESET LiveGuard Advanced. In ESET business products, you can find it also as ESET LiveGuard. Both names refer to the same service.
-
BrianMorris received kudos from Ufoto in TIP: how to find computers without EDTD
Back in this post, I asked how I could figure out which computers didn't have EDTD activated:
None of the tips did what I needed, but I just figured it out. I have a Static group of clients that have EDTD licenses, but I couldn't figure out a way to quickly figure out which had EDTD and which didn't. If I add a new computer, it doesn't throw errors about EDTD not be activated, so I can't do a group based on that.
Here is what worked:
-
BrianMorris received kudos from Lockbits in TIP: how to find computers without EDTD
Back in this post, I asked how I could figure out which computers didn't have EDTD activated:
None of the tips did what I needed, but I just figured it out. I have a Static group of clients that have EDTD licenses, but I couldn't figure out a way to quickly figure out which had EDTD and which didn't. If I add a new computer, it doesn't throw errors about EDTD not be activated, so I can't do a group based on that.
Here is what worked:
-
BrianMorris received kudos from MichalJ in TIP: find any computer with a particular program installed
Inspired by some recent posts here, I figured out how to create dynamic lists of computers with McAfee or Java or anything installed. My RMM does a lousy job of this, so this is *so* helpful.
One thing that threw me off in the past is that the report is blank right after the creation. You need to wait awhile for it to fill in.
-
BrianMorris received kudos from Peter Randziak in Log4J Vulnerability
I figured I'd jump in for fun! I tried to test for the vulnerability:
(as Marcos keeps saying, they don't use log4j; also, if an endpoint tries to USE the exploit, it will be stopped -- that's cool)
-
BrianMorris received kudos from MichalJ in CLOUD 3.0 improvements
Thanks everyone at ESET for all of the improvements. I've just been playing some this morning and I see some things that were added/changed that I've been asking for and that have been needed for years.
1 - I can add the file path/name of the detected malware to email alerts
2 - The UI of the customizing of the alert is MASSIVELY improved.
3 - I can UPGRADE a license without needing to suspend, activate, wait for computers to come online, etc. THIS IS HUGE!!!!!!!
4 - EDTD submissions now show on the Computer Detail page
What else will I notice?
-
BrianMorris received kudos from igi008 in CLOUD 3.0 improvements
Thanks everyone at ESET for all of the improvements. I've just been playing some this morning and I see some things that were added/changed that I've been asking for and that have been needed for years.
1 - I can add the file path/name of the detected malware to email alerts
2 - The UI of the customizing of the alert is MASSIVELY improved.
3 - I can UPGRADE a license without needing to suspend, activate, wait for computers to come online, etc. THIS IS HUGE!!!!!!!
4 - EDTD submissions now show on the Computer Detail page
What else will I notice?
-
BrianMorris received kudos from MichalJ in Options in "Computer Preview"
That's cool that we can customize this -- I didn't realize that. I see that more options have been added:
-
BrianMorris received kudos from MichalJ in Check which workstations need updates
Thanks for the response! Ok, I re-read what you posted above and you gave me some hints. I found that I can click on the outdated Agent version and click "Update installed ESET products..." and then just tell it to upgrade all of those agents. This is a huge help.
-
BrianMorris gave kudos to Marcos in Info on which website caused Eset to take action
If you are referring to email notifications sent by Endpoint, I recall there are plans to improve them. You can ask for desired improvements via your local ESET distributor who will then report it further to ESET HQ. The more people request a feature that is reasonable and can be implemented, the higher chance it will be implemented.