Wilders Security Forums  

Go Back   Wilders Security Forums > Official ESET Support Forum > ESET Business Users Products Forum > ESET Endpoint Products
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old October 2nd, 2012, 02:56 PM
Michael_W Michael_W is offline
Infrequent Poster
 
Join Date: Oct 2012
Posts: 1
Default False Positive?

Greetings,
Just started getting these alerts on our mail server an hour or so ago. Funny thing is that it looks like ESET is triggering alerts on it's own definition updates?

Any help would be appreciated.
Regards,

Mike...
Attached Images
 
  #2  
Old October 2nd, 2012, 03:30 PM
dwomack's Avatar
dwomack dwomack is offline
Eset Moderator
 
Join Date: Mar 2011
Posts: 585
Default Re: False Positive?

The names on the temp files are completely coincidental. If our scanners were detecting our own updates as malware, I have no doubt we'd be flooded with reports like this.

Either way, it would definitely be a good idea to send these files to our VirusLab. Here's the KB Article on how to do that:

How do I submit a virus, website or potential false positive sample to ESET's lab?
__________________
Resources: KnowledgebaseFacebook (US) • @ESET@ESETNASupportNewsBlog • YouTube: ESETKnowledgebase and esetusa
  #3  
Old October 3rd, 2012, 06:39 AM
Marcos Marcos is offline
Eset Moderator
 
Join Date: Nov 2002
Posts: 14,185
Default Re: False Positive?

Unfortunately, the Scanner column is visible only partially and we can only guess what "M..." stands for. Please submit your threat log along with the detected NOD*.tmp files to ESET as per the instructions here with this thread's url in the subject.
  #4  
Old October 3rd, 2012, 10:09 AM
Geosoft Geosoft is offline
Frequent Poster
 
Join Date: Jan 2009
Location: Toronto, Ontario, Canada
Posts: 270
Default Re: False Positive?

I could be wrong about this, but I believe that the updates for ESET are not stored in that folder. It would be stored in a location such as this: C:\ProgramData\ESET\ESET Endpoint Antivirus\Updfiles\temp

What you are probably seeing in the temp files created for the web scanner as content is being downloaded from the web. Maybe your web scanner isn't as strict as your real time scanner?
__________________
Geosoft. Operating EEA 5.x on 190 nodes, across 6 satellite offices on 6 ERA 5 servers.
 

Wilders Security Forums > Official ESET Support Forum > ESET Business Users Products Forum > ESET Endpoint Products « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 03:45 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums