Jump to content

peteyt

Most Valued Members
  • Posts

    2,147
  • Joined

  • Last visited

  • Days Won

    41

Kudos

  1. Upvote
    peteyt gave kudos to Nightowl in Latest Malware Protection tests on AV Comparatives   
    For me that's excellent for most of them .. so it depends only on your taste and opinion and experience with the software itself , I tend to like ESET more because it's been several years with it and I just don't want to move on to another product , even though I would like to try Kaspersky for a bit , but I still stay with ESET due to several years of using it and it's light.
  2. Upvote
    peteyt received kudos from Peter Randziak in Windows 20H1   
    Updated today to the stable version of build 2004 and haven't seen any issues. Seem to be slowly rolling it out now
  3. Upvote
    peteyt gave kudos to itman in "pyrate", Behavior Blocker Bypass POC   
    It's been a slow forum posting weekend and it appears this thread has run its course. We have all had the opportunity to "rant and rave" about Eset Home version protection features we all wished we had and in reality, probably never will have. So it is time to expose this Python POC for what it is - fake ransonware. Err ..... what, you say? The POC encrypted files. Well so does a lot of legit encryption and other apps including user created ones. So lets get into this.
    A few years back, the NextGen security software vendors were trying "to get traction" against the established AV vendors with their supposed superior behavior detection methods. Corresponding to this was the appearance a proliferation of ransomware "simulators" where one was encouraged to test their existing AV solution with. The most infamous of these was RanSim produced by KnowBe4: https://www.knowbe4.com/ransomware-simulator . I wrote a thread about the methodology used by this product and similar ones here: https://forum.eset.com/topic/10792-ransomware-simulators-a-detailed-analysis/ . Eset subsequently commented upon Ransim tactics in their own publish article on Eset ransomware protection:
    https://cdn1.esetstatic.com/ESET/INT/Docs/Others/eset-vs-crypto-ransomware.PDF
    So let's get into some details on the POC. First, note this from the POC's author posting about it at malwaretips.com:
    Next is why no vendor on Virus Total detected the POC initially and I believe presently. That one is pretty straightforward. The ransomware portion of the POC never ran. The POC pauses program execution waiting for user input to continue. VT's automated sandbox analysis timed out waiting for input it does not respond to.
    In summary, I am not 100% ruling out that techniques used in the POC could bypass existing Eset ransomware detection methods. However, a POC must be developed deploying real world ransomware deployment and execution methods with the most important being the program runs uninterrupted and encryption activities performed against all existing files in C:\Users\xxxx\Documents\*, etc. directories.
     
  4. Upvote
    peteyt received kudos from fabioquadros_ in ESET Memories   
    I gather amon is just a part of eset? Interesting to see how the GUI and GUIs in general have changed over the years
  5. Upvote
    peteyt gave kudos to Marcos in I want to know why Eset security products are so fast.   
    There are many reasons for that, not just one. One of the things we do is that the resource-intensive code emulation is done once and the result is cached for future use so advanced heuristics doesn't have to emulate files each time they are accesses and scanned. Then there are other safe caching mechanisms to ensure that files are re-scanned only when needed (e.g. after module updates), trusted / whitelisted files are scanned less frequently, etc. which also positively affects performance.
  6. Upvote
    peteyt gave kudos to Marcos in ESET to support development of a Coronavirus PCR test in Slovakia, donates the first 100,000 samples   
    https://www.eset.com/sk/o-nas/press-centrum/eset-tlacove-spravy/nadacia-eset-podporila-vyvoj-slovenskeho-testu-na-koronavirus-a-financuje-prvych-100-000-kusov/
    Machine translation:
    Scientists from Slovak companies MultiplexDX, Lambda Life and ProScience Tech have joined forces with virologists from the Biomedical Center of the Slovak Academy of Sciences (BMC SAV) to build a reagent kit according to the World Health Organization (WHO) protocol for reliable detection of SARS-CoV-2. In the first phase they plan to produce and make available 100,000 PCR tests. The ESET Foundation supported the development of the test and finances the first 100,000 pieces to be offered as a gift to the Slovak Republic.
    Key components have been developed and manufactured by MultiplexDX, a company dedicated to developing and manufacturing innovative reagents for various molecular diagnostic methods. The Slovak PCR test is currently being validated in cooperation with a team of scientists from the BMC SAS. Preliminary results show not only the functionality but also the good sensitivity of the new test, comparable to the currently used diagnostics. “This means that our test is reliable and accurate and can help diagnose early-stage patients. We can produce key components for 100,000 PCR tests in two weeks, ”explains Pavol Čekan, founder of MultiplexDX.
    “In the process of validation and subsequent registration of the resulting report we cooperate with the non-profit organization CCCT SK. It will be estimated to take about three weeks, ”said Adam Andráško of ProScience Tech. "Virus detection consists of sample collection, RNA isolation and PCR diagnostics itself, with our joint efforts focused on the last step," said Ivan Juráš of Lambda Life. “I believe that the efforts of our scientists will be crowned with success, and we will have enough PCR tests from our own resources as important as coronavirus detection. This will help Slovakia not only in continuous testing, but we will also create a reserve in case there is a shortage of tests in the world, ”notes Robert Mistrík from the permanent crisis staff.
    The ESET Foundation supported the development of the test and provided funding for the first 100,000 units from the COVID-19 Effective Diagnosis and Prevention Fund. These tests will be offered as a gift to Slovak state institutions. “When creating the Fund, it was important for us to ensure effective mass-scale diagnostics, which can only be achieved through science. Even in such a critical situation, the importance of supporting science in Slovakia, which we have been dedicated to for a long time, thus proves important, ”says Richard Marko, CEO of ESET.
    Production capacities will primarily be available to diagnostic laboratories in Slovakia after the first 100,000 tests have been used. “We are ready to cooperate with state laboratories, flexibly respond to their needs and supply them efficiently. After meeting the needs of Slovak Laboratories, we can direct our capacities to other countries that would need our products, ”explains the authors of the test.
  7. Upvote
    peteyt received kudos from pecelot in Automatic updates/scans and a weak laptop   
    There is a gamer mode you can enable when playing games
  8. Upvote
    peteyt received kudos from pecelot in Automatic updates/scans and a weak laptop   
    https://support.eset.com/en/kb2838-enabledisable-gamer-mode-in-eset-windows-home-products
    This article should explain how to enable it. You can also set it up to automatically enable if it detects a full screen app
  9. Upvote
    peteyt gave kudos to itman in Latest update BSOD.   
    FYI in regards to anyone using Win 10 Insider builds:
    https://www.onmsft.com/news/kaspersky-declines-support-windows-insider-builds-windows-10
    To the above, I add that just because Eset runs w/o issue on a Win 10 Insider build does not imply it is working properly. In other words, it is "user beware" in this regard.
  10. Upvote
    peteyt received kudos from Aryeh Goretsky in ESET Memories   
    I gather amon is just a part of eset? Interesting to see how the GUI and GUIs in general have changed over the years
  11. Upvote
    peteyt gave kudos to Marcos in ESET Memories   
    Cherishing memories




     

     

     
  12. Upvote
    peteyt gave kudos to Nightowl in ESET Memories   
    Just some photos I found on the internet that can bring some good moments and make your white hair shine brighter.



     
    Hmmm , I used to love that GUI ! , so simple and basic but powerful.
  13. Upvote
    peteyt gave kudos to Nightowl in ESET to create a fund to support effective diagnosis of SARS-CoV-2 coronavirus   
    This is very nice of ESET
    Also for people who are interested to give their computer power to help solve the problem you can do this using Folding@Home , https://foldingathome.org/2020/03/15/coronavirus-what-were-doing-and-how-you-can-help-in-simple-terms/
    But that will use most of the CPU and GPU if it's running on your computer , it will help scientists find a formula against the Corona.
    I hope it will be good and peaceful all over the world.
  14. Upvote
    peteyt gave kudos to Marcos in ESET to create a fund to support effective diagnosis of SARS-CoV-2 coronavirus   
    ESET has been protecting users worldwide for decades already and have always provided state-of-the-art protection. While it was always our digital worlds that ESET has been protecting, now with the epidemic of the SARS-CoV-2 coronavirus the need to protect also users themselves became inevitable. Besides supporting various scientific and charity events, we are now creating a fund to support effective diagnosis of SARS-CoV-2 coronavirus, giving 300,000 EUR to support the purchase of a diagnostic system capable of analyzing 4000 samples per day.
    By purchasing ESET's products you can be sure that you also support science and charity.
     
    Machine translation:
    https://translate.google.com/translate?sl=sk&tl=en&u=https%3A%2F%2Fwww.eset.com%2Fsk%2Fo-nas%2Fpress-centrum%2Feset-tlacove-spravy%2Fspolocnost-eset-vytvara-fond-na-podporu-ucinnej-diagnostiky-koronavirusu-sars-cov-2%2F
    Recognizing the seriousness of the SARS-CoV-2 coronavirus spread, ESET has decided to engage in the fight against the epidemic in Slovakia. The ESET Foundation has therefore set up a COVID-19 Effective Diagnosis and Prevention Fund, to which ESET will contribute EUR 300,000. The amount will be increased later if necessary. The aim of the newly established fund is to provide, in the first phase, the necessary equipment for improving the quality of diagnostics and introducing comprehensive testing in Slovakia.
    Since its inception, ESET has dedicated itself to the diagnosis of computer viruses and is symbolic to support the diagnosis of biological viruses in this situation. Even at such moments, the importance of science, which can make a significant contribution to solving the situation, has been shown. ESET Foundation supports science and research and is the organizer of the ESET Science Award.
    “We have set up a fund to support the effective diagnosis and prevention of coronavirus because we believe that only a systematic scientific approach will help us manage this epidemic. At the same time, it is essential that we think ahead today and take steps to relaunch the economy. General and systematic testing of the population will help in returning the employees to the work process and thus also help the Slovak economy, ” explains Richard Marko, CEO of ESET.
    Through the Fund, ESET will support the purchase of high-performance diagnostic equipment, the development of systems for more efficient online diagnostics, or contribute to the cost of operating or collecting and transporting samples. Public and private medical diagnostic institutions and laboratories operating in Slovakia that are authorized to diagnose this type or to take and transport SARS-CoV-2 related samples may receive financial support. These institutions can contact the ESET Foundation at nadacia[at]eset.sk . The expert guarantor in the evaluation of the use of the fund's resources is the recognized Slovak chemist Robert Mistrík.
    “After the first discussions, we are considering co-financing the purchase of the Roche cobas 8800 System, or co-financing its operation. This device is able to do real-time RT-PCR tests at lower unit cost and shorter time in automatic mode. It can evaluate up to 4,000 samples in a single day. We will look for a partner to operate this device. Of course, the fund will also be open to other solutions supporting its goal, ” concludes Robert Mistrík, the fund's expert guarantor.
    More information about the Fund for the Support of Effective Diagnosis and Prevention of COVID-19 can be found at www.nadaciaeset.sk .
  15. Upvote
  16. Upvote
    peteyt gave kudos to Nightowl in Whats with the WIN7 o/s out of support nag   
    Ubuntu is good for starting and also for advanced , but for GUIs take a look at :
    Ubuntu KDE
    Ubuntu MATE
    Ubuntu GNOME
    LinuxMINT Cinammon looks a bit like W7 if you are interested
    For me I use MATE , It's great.
    You can also download the LTS edition , which will make your upgrades every few years(major operating system upgrade) , and also LTS is considered to be more stable , but the newer versions have newer features but I would go with LTS for sure
     
    Put it on a USB and run it as a live image , and test the linux as much as you want , when you will restart you will go back to your Windows normally , so that way you can give Linux a try , or fire it up in a virtual machine
  17. Upvote
    peteyt gave kudos to Hpoonis in Whats with the WIN7 o/s out of support nag   
    I have a local account. I do not use online anytihng for this win10 debacle.  I have SHUTUP switch off almost everything. I have no one drive, I have no microsoft accounts.
    microspasm have, over the years, clearly demonstrated their mistrust, disgust and lack of customer service for the very people who made them the global garbage patch they now are.
    As for a Linux recommendation, clearly, the front runner for new folk is Ubuntu.  The GUI has evolved vastly over the years, it is stable, useful and easy to get to grips with.  The standard desktop version contains all the workable software you would likely need. Installing more software is a doddle and there is a world of passionate, dedicated expert-like folk who will gladly offer any free assistance.
    There is NO activating online. There is (almost) no snooping - firefox, etc will have crash report info sent off but these things can easily be disabled. Almost everything you could want will be available as Open Source or GPL, etc so no worries about purchasing things.
    Virtualisation runs far better on the Linux platform than windows via KVM/QEMU. The only caveat that I have encountered is that cut/paste between host/guest and shared folders are a bit trickier to set up than would be the case with a windows setup. However, if you don't want a more hardware-centric virtualisation then you can still employ virtualbox which operates as well as virtualbox does anywhere.
    Software development tools do NOT require 10Gb or more of install as one gets with visual studio. By the same token, no registration is required such as microspasm force one into so they can spy on more of your activities.
    If one is a non-gaming user, Linux is ideal. If one is a business user, it could also be ideal but for the fact that the bulk of businesses use BackOffice tools - especially exchange/outlook; the latter of which has been altered so it is not so user-friendly any longer.
    I was weaned on UNIX (SYSV) and have been a ms/windows tech-type since MSDOS 3.x and windows 3. With every subsequent release, I have disliked windows less and UNIX-like more.
    The day windows is history will be a glorious day for the whole world!
    P.S. Once you feel confident enough you can even recompile your Linux kernel to streamline it to your tastes and speed-up your boot times.  Personally, I have not recompiled a kernel since using Slakware but it is fun to try and would take far less time today than the 4-7 hours it used to take using pre-pentium intel chips back in 1993.
  18. Upvote
    peteyt gave kudos to itman in Web Site Magecart Attacks - Kudos to Eset Again!   
    First a recent reference article:
    Credit Card Skimmer Found on Nine Sites, Researchers Ignored
    https://www.bleepingcomputer.com/news/security/credit-card-skimmer-found-on-nine-sites-researchers-ignored/
    So I decided to test Eset on detection capability. Per the linked article, picked one of the infected sites - Bahimi swimwear shop - first infected in November, 2019, the skimmer is still there today.

    Attempted to order something here: https://bahimi.com/gbp/checkout/onepage/ .

    Eset immediately detected the card skimmer:


  19. Upvote
    peteyt received kudos from Alesan93 in ESET Internet Security   
    If it's still not there check it hasn't accidentally landed in the spam folder
  20. Upvote
    peteyt gave kudos to itman in Realtek Fixes DLL Hijacking Flaw in HD Audio Driver for Windows   
    To begin, anyone who hasn't updated their Realtek audio driver in the last few months is most likely vulnerable. All audio drivers prior to version 8857 are vulnerable.
    I am posting this because:
    1. This is a kernel mode device driver vulnerability.
    2. The outfit, SafeBreach Labs, who developed the POC: https://safebreach.com/Post/Realtek-HD-Audio-Driver-Package-DLL-Preloading-and-Potential-Abuses-CVE-2019-19705 , has a penchant for later using their POC's to show how AV protections can be bypassed using these vulnerabilities.
     
    https://www.bleepingcomputer.com/news/security/realtek-fixes-dll-hijacking-flaw-in-hd-audio-driver-for-windows/
  21. Upvote
    peteyt gave kudos to itman in Pirated Software is All Fun and Games Until Your Data’s Stolen   
    https://www.bleepingcomputer.com/news/security/pirated-software-is-all-fun-and-games-until-your-data-s-stolen/
  22. Upvote
    peteyt gave kudos to Marcos in Eset Uninstalled by itself   
    First of all, installing an antivirus without taking other measures, such as keeping the OS fully up to date and patched, avoiding opening suspicious email attachments, clicking suspicious links or keeping RDP enabled without restrictions is not enough. Moreover, no security solution can ever protect from 100% of threats.
    Not sure what happened, if your files were encrypted by ransomware or what you actually paid for. Technical support is provided to our users for free. Also without any further logs, proof and information what actually happened it's unfair to blame ESET.
  23. Upvote
    peteyt gave kudos to itman in Did You Recently Update to FireFox ver. 72?   
    Make sure you check for updates again:
    https://www.ghacks.net/2020/01/08/firefox-72-0-1-fixes-a-security-vulnerability-that-is-actively-exploited/
  24. Upvote
    peteyt gave kudos to itman in 9anime blocked bcz of HTML/scrlnjet.B trojan   
    Here is Quttera's detailed report on 9anime.to: https://quttera.com/detailed_report/9anime.to
    It found 23 malicious JavaScript files on the web site. All appear to be hosted at defpush.com.
  25. Upvote
    peteyt received kudos from Mekail wardak in 9anime blocked bcz of HTML/scrlnjet.B trojan   
    No. If a site is hosting malware then it is a dangerous site and really should be avoided. As Itman had said allowing the site access can and probably will put you at risk. 
×
×
  • Create New...