ESS3
May 7th, 2008, 01:46 PM
Greetings.! I from Russia, Moscow, call me Vitalik, I do not know language, I use the translator, there can be problems with understanding :)
Has noticed 2 problems on Windows Vista 64 bit Ultimatum, they generating of 100 %, on any systems Vista 64 bit I the administrator and other users are not present, Windows at me new, checked and on other personal computers
The problem 1, does not see file Eicar at full scanning of the personal computer, in many places of system if to scan a file freely laying on a disk-writes error opening [4]It seems to me after updating Antivirus and antispyware scanner module: 1111 (20080506)
http://www.ii4.ru/images/445050Snimokpr.JPG (http://www.ii4.ru/)
Has passed 10 Eicar!
And at all it does not write што them error opening [4] Actually a picture such
http://www.ii4.ru/images/678374dfg.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/866021Snimok 2.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/1034543.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/630019Snimok 1.JPG (http://www.ii4.ru/)
And so on! Generates on 100 %
Problem 2! Was always! When I copy Eicar, from a desktop in any place on a disk(C) With:, NOD cannot remove Eicar writes Access denied, and штобы the scanner could remove it, it is necessary to come into properties Eicar! And to resolve all for the user
Or to wait for a miracle, when already file module (not the scanner) will be switched on NT AUTHORITY \SYSTEM, it too all over again cannot remove Eicar, and after there 10 detectings it is switched on NT AUTHORITY \SYSTEM and deletes, and to the scanner not on teeth EICAR
-{ Quote: "07.05.2008 20:52:46 Real-time file system protection file C:\eicar.com Eicar test file cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\Program Files (x86)\Internet Explorer\iexplore.exe." }-
http://www.ii4.ru/images/442695fayl svoystva.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/43177fayl 1.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/536957fayl 2.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/9738733fayl.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/829971fayl 4.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/160853Simka.JPG (http://www.ii4.ru/)
And so on
When the file (Eicar) freely lays on a disk, and gets properties Rootkin, it deduces, I already wait from the release of version 3 when the antivirus awakes to function not worse than on windows XP (I it am no time more shall not put), how many it is possible to wait? The antivirus strongly to like me! Microsoft already in SP1 has made conditions for antiviruses, including access to a kernel, and the antivirus till now does not check on Viste 64 bit boot sector
With output SP1, the problem of quarantine (carry of a file by the person) has disappeared:)
Has noticed 2 problems on Windows Vista 64 bit Ultimatum, they generating of 100 %, on any systems Vista 64 bit I the administrator and other users are not present, Windows at me new, checked and on other personal computers
The problem 1, does not see file Eicar at full scanning of the personal computer, in many places of system if to scan a file freely laying on a disk-writes error opening [4]It seems to me after updating Antivirus and antispyware scanner module: 1111 (20080506)
http://www.ii4.ru/images/445050Snimokpr.JPG (http://www.ii4.ru/)
Has passed 10 Eicar!
And at all it does not write што them error opening [4] Actually a picture such
http://www.ii4.ru/images/678374dfg.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/866021Snimok 2.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/1034543.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/630019Snimok 1.JPG (http://www.ii4.ru/)
And so on! Generates on 100 %
Problem 2! Was always! When I copy Eicar, from a desktop in any place on a disk(C) With:, NOD cannot remove Eicar writes Access denied, and штобы the scanner could remove it, it is necessary to come into properties Eicar! And to resolve all for the user
Or to wait for a miracle, when already file module (not the scanner) will be switched on NT AUTHORITY \SYSTEM, it too all over again cannot remove Eicar, and after there 10 detectings it is switched on NT AUTHORITY \SYSTEM and deletes, and to the scanner not on teeth EICAR
-{ Quote: "07.05.2008 20:52:46 Real-time file system protection file C:\eicar.com Eicar test file cleaned by deleting - quarantined NT AUTHORITY\SYSTEM Event occurred during an attempt to access the file by the application: C:\Program Files (x86)\Internet Explorer\iexplore.exe." }-
http://www.ii4.ru/images/442695fayl svoystva.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/43177fayl 1.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/536957fayl 2.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/9738733fayl.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/829971fayl 4.JPG (http://www.ii4.ru/)
http://www.ii4.ru/images/160853Simka.JPG (http://www.ii4.ru/)
And so on
When the file (Eicar) freely lays on a disk, and gets properties Rootkin, it deduces, I already wait from the release of version 3 when the antivirus awakes to function not worse than on windows XP (I it am no time more shall not put), how many it is possible to wait? The antivirus strongly to like me! Microsoft already in SP1 has made conditions for antiviruses, including access to a kernel, and the antivirus till now does not check on Viste 64 bit boot sector
With output SP1, the problem of quarantine (carry of a file by the person) has disappeared:)