Jump to content


ESET Insiders
  • Posts

  • Joined

  • Last visited

  • Days Won


BALTAGY last won the day on December 9 2019

BALTAGY had the most liked content!


  • Rank

Profile Information

  • Gender
  • Location
    Please select

Recent Profile Visitors

3,799 profile views
  1. That's what i'm talking about, also many users won't even know it's a ransomware and could be waiting online for sometime then the ransom will keep downloading other viruses etc until the system freeze and you can't open it and for sure the ransom note also will be gone and you can't use it if the Decryptor require it This scenario can easily happen, if the anti-ransomware need to read the ransom note to be triggered then it also can read it and leave it
  2. how encryption occurred is not in ransom note, ransom note only contain info how to pay and emails and the important part is the id Even if anyone removed the ransomware it self from the system and didn't delete the ransom note it won't do anything but it will help the user to determine the ransom name and version by uploading it to some sites like id ransomware I hope you consider leaving the note as it contain an important info and if something wrong happen to the system the user may not be able to recover the files without it like GandCrab it's ransom note is important to recover the files
  3. Not sure i get what you mean ? Yes the user is asked but if you choose ignore it will keep come up many times until you exclude it or delete it I just want to know what the point of delete the ransom note ? it's harmless also if ESET can't detect the ransomware it self and only delete the ransom note after sometime while ransom is running and downloading other viruses etc, the user may not be able to recover the note from quarantine
  4. You mean this option ? Also i know it can be restored but i must disable the protection to restore it What the point of deleting it ? Here's an example, it's being deleted via database, and here's virus total https://www.virustotal.com/gui/file/c65b7b3734f8f42687487c69c50da5ba31915d092ae8bca3ae4d1670300f652c/detection _readme.rar
  5. Hi, Why ESET is deleting Ransomware notes ? it contain important info like ID that can be used to decrypt the encrypted files ! Thanks
  6. I remember i did read something about it but did search and didn't find anything, thanks for the info
  7. Isn't these testes act like a real ransomware ? why ESET don't block the operation of encrypting these files ?
  8. Hi, I came across this tool that should be testing some ransomware scenarios Original link https://www.comss.ru/page.php?id=3594 Shouldn't be ESET block these testes ?
  9. I was just testing the custom scan now and selected "Operating memory,Boot sector, WMI, System registry, Desktop" I see some files being scanned too many times like storage.dll in SysWOW64 And some files took ESET sometime to finish ( i can send one of them if you like ) Scan finished after 25min Did a custom scan again for the C drive ( System Drive ) with Boot sectors and UEFI selected by defaults and scan finished after 5min only
  10. Hi, Why Advanced heuristics/DNA signatures option is not enabled by defaults ? dose enabling this option will slow down the system ? Thanks
  11. 2 hours ago You have 38 posts of complains, if ESET is so bad and there's a free other products are better with 100% protection as you said before, let me ask you again since you ignored to answer every time Why you still using ESET if you see it very bad ? Are you even using ESET ?
  12. I did test v13.0 and v12 all of them have same problem in a clean system only ESET and Firefox But once i installed chrome it works fine I think ESET need to check it, maybe a module update is needed
  13. Here's the logs after downloading eicarcom2.zip and while ESET didn't add it self into Firefox It's a clean system only ESET + Firefox + IDM installed eis_logs.zip Update: Just installed chrome in this clean system and everything works fine Update2: wilderssecurity.com/ shows Adguard certificate in chrome but ESET still block eicarcom2.zip
  14. Did test in a clean system without Adguard and ESET don't show in Firefox
  • Create New...