Jump to content

CMS

Members
  • Posts

    66
  • Joined

  • Last visited

  • Days Won

    1

Posts posted by CMS

  1. Hi folks,

    I have been quite happily using a command line step in MEMCM to install ESET Endpoint Antivirus. Example as follows: PROTECT_v9.0.2046.0_Installer_x64_en_US.exe --silent --accepteula

    This no longer seems to be working, as ESET does not get installed as part of the task sequence. If I run the command from an administrator level DOS prompt it doesn't do anything, so it suggests something has changed with the options needed.

    Should the above command still work, or if not are there still command line options I can use to silently install the endpoint?

    Thanks

  2. Hi folks,

    Our license usage in ESMC is showing as slightly over, so I have done some tidying up and removed some ex-PCs (ensured no policy was applying, used "Stop Managing", and "Remove Device"). I have verified they are no longer in the Computers listing.

    Our license count is still exactly the same though. Does it takes some minutes/hours for the license count to catch up?

    Thanks

  3. Yes, from Feb and Jan. The filter had been set to a time range, so I've removed that and see threats going back for many months. These are all previous though and have been resolved.

    I suspect there must have been a filter on the group to hide resolved threats, which I may have removed. If I add back a "threat resolved" filter then the "Computers with active threats" group is now empty.

  4. I had a look at all the machines with threats, and they were all false positives due to what it thought were problem applications in a driver install package. So I've marked them as resolved.

    I've gone back to the "Computers with active threats" group and looked through all the machines via their details. Not sure what you mean by "Cause column in the Threat panel", how do I get to that? All I can see in details, under Threats and Quarantine, is that some but not all PCs have a quarantined item. None of them have active alerts. Is the quarantined item classified as an active threat?

  5. Hi folks,

    In ESMC the Computers icon on the left appears with a red number, which I'm assuming shows the number of machines that have an error.

    When I filter the computers with errors the number never matches the list, which leads me to one of two conclusions:

    1. The number on the left is wrong.

    2. This number relates to something else.

    I have asked ESET support about this, and they said it's a known bug. But the previous ESET Remote Administrator did exactly the same thing, so I just want to check with other users whether this sounds correct? If so, I can't believe that such a vital bug has not been fixed.

    Thanks

  6. Hi folks,

    I received a "Malware Outbreak Alert" email, which is triggered when > 5% of machines have an active threat. I checked the "Computers with active threats" dynamic group, and it has 5.5% of our total PCs there, so it must have just tipped over, rather than being an actual mass outbreak.

    I have rung ESET support, but got a somewhat wishy-washy response about what to do, which was essentially taken from what I was going to do anyway, listed below.

    The steps I thought to follow were as below:

    1.    Open the ESMC console
    2.    Go to Computers > Computers with active threats (Dynamic group)
    3.    Look at the list of computers, and look at each computer in detail (left click computer, select “Show Details”)
    4.    When looking at the computer details, look at the Threats & Quarantines section. Is anything listed there?
    5.    Worst case, it might be necessary to go the ESET client on the PC itself and look at those same sections to see what is shown.

    Firstly, does this sound like the right approach?

    Secondly, I have some computers in the "Computers with active threats" dynamic group that don't have any threats - the threat column has "0" in it, and nothing shows when I look at the detail. Anyone know why they are showing in this group?

    Thanks

  7. I can't install ESMC as it's asking for a database administrator username and password, which I have no record of. The admin username and password don't work. Not sure if the issue is this, or the connection credentials, but have logged a support ticket.

×
×
  • Create New...