PDA

View Full Version : NOD AntiVirus Beta 2 Comments


Thankful
August 23rd, 2007, 02:31 PM
Everything seems fine so far. Definitions updated O.K. I like the little touch that was added to Update re: 'Update not needed. Definitions up to date'. Ran scan O.K. Checked AV vs. Eicar test virus and program responded with virus message.
Virus definition signature now displayed with tooltip.

crummock
August 23rd, 2007, 02:58 PM
Can we see some screen shots of the AV only version for interest please from anyone using that ?

Many Thanks.

Thankful
August 23rd, 2007, 03:07 PM
The place for AV and Suite screenshots is here:
http://www.wilderssecurity.com/showthread.php?t=179976
I'm sure the new screenshots will be posted shortly.

ugly
August 23rd, 2007, 03:08 PM
At the first view :

Still have to disconnect to install :'( or else :

192836

Still 5 warnings from eicar instead of 1.

Marcos
August 23rd, 2007, 03:31 PM
-{ Quote: "At the first view :
Still have to disconnect to install :'( or else :
" }-

Network must always disconnect for an instant when any network drivers are being installed. If you know about such a firewall, I'll be interested in testing it.

-{ Quote: "Still 5 warnings from eicar instead of 1." }-

This is not a matter of ESS. If your browser tries to re-establish a blocked connection 5 times, ESS will block it 5 times. It won't block it 4 times and one time will let malware do its job.

Steel
August 23rd, 2007, 04:17 PM
Maybe I'm wrong, but the small Taks Icon shows newest Date Base 2.278. But inside the programms it shows 2.280 ???

Marcos
August 23rd, 2007, 04:33 PM
Mine shows the version correctly at both places.

dormix
August 23rd, 2007, 04:46 PM
The waiting has been rewarded. Very Nice!
My first impression is:
- Traditional lightness and fluidity.
- Optimized graphics of GUI.
- The scan on demand works very fine showing the log in a new window and without many use of performance and without GUI hanging.

I find a little problem with the context menu scanner: when I moved the TASK MANAGER window on the context menu scanner window it didn't refresh.
Anyone knows how to set the scan from winrar toolbar?

ugly
August 23rd, 2007, 04:53 PM
-{ Quote: "Network must always disconnect for an instant when any network drivers are being installed. " }-

You are right. But only in ESS case installation ( after disconnect and reconnect or not ) ends to an error.

Abot EICAR or any other malware - suppose my browser will try to download that a hundred times will I have to get a warning every single time ? No I don't think so. My personal opinion is you should block it once and for good ( terminating that connection).

PcVersteher
August 23rd, 2007, 06:37 PM
Hello

What must i see, since Installation in system32\drivers Directory ?
epfwtdir.sys ? When i delete this driver from a other Winxp Installation an reboot i read the Message : Failed to read Firewall settings ?
A Personalfirewalldriver in Eset Antivirus ? Sorry Eset. No Way for me :(

mfg PcVersteher

Marcos
August 23rd, 2007, 06:45 PM
-{ Quote: "Hello

What must i see, since Installation in system32\drivers Directory ?
epfwtdir.sys ? When i delete this driver from a other Winxp Installation an reboot i read the Message : Failed to read Firewall settings ?
A Personalfirewalldriver in Eset Antivirus ? Sorry Eset. No Way for me :(

mfg PcVersteher" }-

The solution for you is installing ESET NOD32 Antivirus which does not include firewall. Of course, if you manually remove crucial drivers ESS will complain and can return errors.

PcVersteher
August 23rd, 2007, 07:05 PM
Hello
ESS will complain and can return errors?

I have installed only Eset Antivirus. When ESS has a Personalfirewall, ok.
I don´t like to have an Personalfirewall. I installed Eset Antivirus.

EDIT: Why have the new ESET Antivirus an Personalfirewalldriver? This is a great Problem for me.

mfg

psychokilla
August 23rd, 2007, 07:24 PM
My MSN (Live) messenger is now crawling when sending files and I've enabled it in all directions, any help with configuring for this would be great. Can I also suggest that you have some pre-configured rules for things like messengers, browsers, etc in the final product? It would save people a lot of time.

huntnyc
August 23rd, 2007, 09:58 PM
Had the GUI hanging on me when I had password enabled. Did not try without having password enabled. Password box would not show for a long time and CPU went up to 100% and finally passwword box would appear and CPU would go down but this was quite annoying but I know it is a beta and that is why I mention it.

Gary

Gary

flyrfan111
August 23rd, 2007, 10:38 PM
I am getting thousands of "internal errors" when doing a scan.

AshG
August 23rd, 2007, 10:55 PM
-{ Quote: "I am getting thousands of "internal errors" when doing a scan." }-

Same here. There are pages after pages of internal errors, especially where archives are concerned.

flyrfan111
August 23rd, 2007, 11:57 PM
I made the report into a word document, it's 228 pages:(

LowWaterMark
August 24th, 2007, 12:09 AM
Well, send the report in and see what they say. Obviously, not everyone is seeing those errors, so let's see what they say when they get your report. It may be Beta 2, but it is still a beta.

Steel
August 24th, 2007, 12:21 AM
-{ Quote: "Mine shows the version correctly at both places." }-
Now the mine shows the same at both places, too. But, today it shows 2.281 so it itself update but didn't show me the update ballon. And, it showes me the the named places 2.281, but at now at On demand Scan it show 2.280 ?

It seems, it didn't changed/count to the newest datebase itself ?

flyrfan111
August 24th, 2007, 12:25 AM
Sent in the report, but uninstalled the beta, just didn't feel secure with so many errors. No one file type seemed to cause them, there were txt, htm, log, tmp, zip, rar, arj, vbs, doc, docx, jpg, .... you name it and it's in there, the greatest majority seem to be packed file types, zip and rar in particular but there were also plenty of uncompressed files as well.

This on Vista Home premium btw, NOD 2.7 and F-Prot have no problems scanning on this system and both were uninstalled prior to the Beta being installed.

oldshep
August 24th, 2007, 12:30 AM
-{ Quote: "Sent in the report, but uninstalled the beta, just didn't feel secure with so many errors. No one file type seemed to cause them, there were txt, htm, log, tmp, zip, rar, arj, vbs, doc, docx, jpg, .... you name it and it's in there, the greatest majority seemed to packed file types, zip and rar in particular but there were also plenty of uncompressed files as well." }-
Hi flyrfan111,

Me too with the internal errors... I just loaded the ESS beta 2 and ran the first scan. On the plus sides, it did find my trojan simulator files and quarantine them.

edit: I am using the suite, not the stand alone antivirus. Also, most if not all of the files listed as "internal error" appear to be zip files in the directory - C:\Ibmtools\aps\RNR\...

flyrfan111
August 24th, 2007, 02:35 AM
Dealing with support about the internal error messages now, sent them a few files to examine and see what the prob is, will keep you guys posted.

Steel
August 24th, 2007, 02:53 AM
Now the mine shows the same at both places, too. But, today it shows 2.281 so it itself update but didn't show me the update ballon. And, it showes me the the named places 2.281, but at now at On demand Scan it show 2.280 ?

It seems, it didn't changed/count to the newest datebase itself ?

And i see no ballon pop up ufter udating datebase.

Steel
August 24th, 2007, 03:00 AM
An other thing. After or during an on demand Scan, is there no possibilty ( avaible ) for sumitting an infected ( or maybe infected file ) ?

I mean, directly sending from the on demand Scan ? Or do i first save the file into quarantine or another place submitting it to ESET ?

Marcos
August 24th, 2007, 03:05 AM
-{ Quote: "Dealing with support about the internal error messages now, sent them a few files to examine and see what the prob is, will keep you guys posted." }-

At least ESS nor my NOD32 v2 don't report any error and both scan all files inside. We'll try it with Eset Antivirus to see if it makes a difference.

Marcos
August 24th, 2007, 03:11 AM
-{ Quote: "An other thing. After or during an on demand Scan, is there no possibilty ( avaible ) for sumitting an infected ( or maybe infected file ) ?

I mean, directly sending from the on demand Scan ? Or do i first save the file into quarantine or another place submitting it to ESET ?" }-

If you suspect a file to be a false positive, the best practice is to encrypt it with WinRAR/ZIP, protect with the password "infected" and email it to samples[at]eset.com with "False positive ..." in the subject. We don't need files that are actually not false positives and, if you even submitted a file it might get lost among those thousands of files that we receive on a daily basis.

Steel
August 24th, 2007, 04:57 AM
Well, it seems to be a part of my Nero 6. Programm.

During a On Demand Scan it shows me this file and gives me just two Options Delete or leave. Why there is no direct submitting possibility from this place ?

So, i thinks it's a false positive, because it's something from Nero. An easy way for ESET's checking this were to submit it directly from founding ( Window at On Demand Scan ) to ESET.

It's very difficult for me to explain in english what i mean. Sorry.

Marcos
August 24th, 2007, 06:37 AM
It's not a false positive, please refer to this thread: http://www.wilderssecurity.com/showthread.php?t=162278&highlight=nero+adware

flyrfan111
August 24th, 2007, 09:50 AM
Still getting internal errors with latest update.

Marcos
August 24th, 2007, 10:05 AM
-{ Quote: "Still getting internal errors with latest update." }-

Have you tried uninstalling ESET NOD32 Antivirus, restarting the computer and installing it from scratch? If it doesn't make any difference, could you try installing ESS and let me know if it helps?

flyrfan111
August 24th, 2007, 10:37 AM
-{ Quote: "Have you tried uninstalling ESET NOD32 Antivirus, restarting the computer and installing it from scratch? If it doesn't make any difference, could you try installing ESS and let me know if it helps?" }-

ESS brings a whole host of other problems with my network, I had already uninstalled and reinstalled ESAV and before reporting the problem. I take it you guys can't reproduce the errors from the files I sent to zeman, correct?

flyrfan111
August 24th, 2007, 11:45 AM
-{ Quote: "Have you tried uninstalling ESET NOD32 Antivirus, restarting the computer and installing it from scratch? If it doesn't make any difference, could you try installing ESS and let me know if it helps?" }-

Uninstalled, deleted all remaining Files, Folders and registry keys with Eset in them, then reinstalled with same result, Trying ESS now.

flyrfan111
August 24th, 2007, 12:09 PM
-{ Quote: "Have you tried uninstalling ESET NOD32 Antivirus, restarting the computer and installing it from scratch? If it doesn't make any difference, could you try installing ESS and let me know if it helps?" }-

Tried removing all Eset files, folders and keys and installed ESS and I get the same result, lots of internal errors.

Marcos
August 24th, 2007, 02:05 PM
-{ Quote: "Still getting internal errors with latest update." }-

The errors seem to be reported on password protected archives. We'll fix it within next week by automatic update.

flyrfan111
August 24th, 2007, 03:03 PM
-{ Quote: "The errors seem to be reported on password protected archives. We'll fix it within next week by automatic update." }-

But none of my files are password protected. There is also the issue of detecting Office 2007 files as ZIP packed.

DOOOMKULTUS
August 24th, 2007, 03:21 PM
This is the worst.
I expected this kind of behaviour from beta 1.evrything is messed up,firstly i had to install/unintall and remove files atleast 4 times,then the firewall wont function,and web protection would malfunction.I did clean install.
and previous betas were just fine.

trjam
August 24th, 2007, 04:08 PM
Well 2 days with the AV and Sandboxie and no issues. Smooth as silk, and trust me that is good as I am their biggest critic.;)

flyrfan111
August 24th, 2007, 04:17 PM
-{ Quote: "Well 2 days with the AV and Sandboxie and no issues. Smooth as silk, and trust me that is good as I am their biggest critic.;)" }-
No problems during full scans? Check your reports, the on access scanner doesn't list the problem, but the on demand scanner log does.

On the other hand I had no problems with 2.7 where as you did.

trjam
August 24th, 2007, 04:34 PM
Holy Swedish Meatballs Batman! So did anything get scanned?

flyrfan111
August 24th, 2007, 04:52 PM
I guess you got the "internal error" report also then.
I uninstalled it pronto after seeing that, makes me wonder what the on access scanner is scanning, or not scanning as the case may be.

JeremyWW
August 24th, 2007, 05:53 PM
I've come back after a brief 'dally' with Avast! to find at last there's a Beta of NOD32 AV!! Just installed, and I have to say...I like it, I like it a lot... :)

rogervernon
August 24th, 2007, 06:14 PM
It's nice here, too. It is so easy to set up scheduled scans now in ESS.
BTW - is the stand alone AV EXACTLY the same as the AV component of ESS?

The_Duality
August 24th, 2007, 06:19 PM
It all sounds rather promising... although I think im going to hold back on installation until the "internal error" thing is sorted out. The I shall be jumping in head-first :)

flyrfan111
August 24th, 2007, 06:31 PM
-{ Quote: "It all sounds rather promising... although I think im going to hold back on installation until the "internal error" thing is sorted out. The I shall be jumping in head-first :)" }-

That's my philosophy, I got an email back from support saying they will have this fixed next week sometime.

Vendetta
August 25th, 2007, 11:18 AM
Well I installed ESS Beta 2 today and I must say: This program is great. The performance is really good, even better than my Kaspersky IS 7 before and that was fast, too. The scans are fast, not as fast as Kaspersky, but it's ok. I really like the schedule function and the antispam component.
Only the firewall is a little confusing for me, but I think this will change after some time. :)

JCorliss
August 25th, 2007, 12:20 PM
-{ Quote: "Well I installed ESS Beta 2 today and I must say: This program is great. The performance is really good, even better than my Kaspersky IS 7 before and that was fast, too. The scans are fast, not as fast as Kaspersky, but it's ok. I really like the schedule function and the antispam component.
Only the firewall is a little confusing for me, but I think this will change after some time. :)" }-Thanks. But this thread is for the AV. ;)

kofi
August 25th, 2007, 04:55 PM
Hi everyone! I 'm a new member in this forum and I would like to ask something, concerning NOD AV beta. When I installed the beta version, i could not update the virus defs...
I have the version 2.7 and i do not experience these kind of problems.
I am not using a proxy server, I have used the eset username and password, I 've even tried my username and password from version 2.7, .... nothing....

dormix
August 25th, 2007, 06:12 PM
-{ Quote: "Still getting internal errors with latest update." }-

I have installed Nod32 beta2 on XP OS and scanner on demand found more internal errors.

I have installed ESS beta2 on VISTA 32b and scanner on demand didn't find any internal errors but

both scanner stopped when they are at 46%
and after more than one hour with processor at 100% I have interrupted the scan

flyrfan111
August 25th, 2007, 06:16 PM
Did they both stop on the same file? Perhaps you should submit that file.