Wilders Security Forums  

Go Back   Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET Smart Security
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old August 25th, 2012, 06:30 PM
zfactor's Avatar
zfactor zfactor is offline
Massive Poster
 
Join Date: Mar 2005
Location: on my zx10-r
Posts: 4,274
Default infection totally missed by ess

had a infection totally missed by eset a trojan. had my credit card web sites passwords stolen and they changed my mailing address' etc.. i always once a week run a scan with malware bytes and hitman. and hitman showed this up. ess scanned right over it.

sadly i guess i have to much faith in ess i still like it and i know its not 100% but eset was one of very few that missed this on virus total. i did submit it to eset but still a bit upset it was missed. i formatted and reinstalled a fresh copy of windows etc. so i no longer have the file and as i said i already submitted it. im going to see what will run and play nice along side eset but this all happened in one day with no notifications and i run scans daily with ess. honestly not sure where it came from either since i dont go to not so nice places and am VERY careful with this system as to what goes on it.
__________________
Meatwad you're up next, with your knock-knock.
Meatwad make the money see. Meatwad get the honeys G. Drivin in my car, living like a star ice on my fingers and my toes, and im a taurus

"Some days your the windshield. Some days your the bug"
Eset ESS V6 / Webroot WSA / Avast! IS V8
  #2  
Old August 25th, 2012, 07:24 PM
Dark Shadow's Avatar
Dark Shadow Dark Shadow is offline
Massive Poster
 
Join Date: Oct 2007
Location: USA
Posts: 4,550
Default Re: infection totally missed by ess

Sorry to here that.IMO you may want to consider adding like Sandboxie to your browser sessions and set it to auto delete its contents on browser close,then start a new browser session before any sensitive data transaction or set up different sandboxes for different tasks.Of course as you know this will not prevent infection for anything intentionally installed on the drive.

Also Maybe Malwarebytes real time would suffice along side ESS.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB.

Last edited by Dark Shadow : August 25th, 2012 at 07:43 PM.
  #3  
Old August 26th, 2012, 02:02 AM
SweX SweX is offline
Massive Poster
 
Join Date: Apr 2007
Location: Sweden
Posts: 3,649
Default Re: infection totally missed by ess

Hi zfactor.

Indeed it's sad to hear that you got infected due to a miss by ESS
I mean it's not like you are a high risk user if you know what i'm saying.

And yeah I also think that ESS would have been enough for a user like you but like you said it's not easy to stay clean if you didn't notice from where that malware came from hmmmm... Sounds nasty
__________________
OpenDNS ESET Smart Security
-A Heavy product is not the same as a Bloated product and vice versa-
  #4  
Old August 26th, 2012, 03:47 AM
zfactor's Avatar
zfactor zfactor is offline
Massive Poster
 
Join Date: Mar 2005
Location: on my zx10-r
Posts: 4,274
Default Re: infection totally missed by ess

ya for sure not at all a high risk user. and i am VERY careful what goes on this system, which is what drives me crazy as to how it happened
__________________
Meatwad you're up next, with your knock-knock.
Meatwad make the money see. Meatwad get the honeys G. Drivin in my car, living like a star ice on my fingers and my toes, and im a taurus

"Some days your the windshield. Some days your the bug"
Eset ESS V6 / Webroot WSA / Avast! IS V8
  #5  
Old August 26th, 2012, 08:03 AM
Niels Niels is offline
Frequent Poster
 
Join Date: Jul 2005
Location: Belgium
Posts: 466
Default Re: infection totally missed by ess

Hi zfactor

I strongly recommend that you use Secunia Personal Software Inspector. Most of these infections came from out of date software, browser plug-ins, not installed Windows Updates, ...

What also can help is enable HIPS in interactive mode in Eset Smart Security. So you can block potential malicious behavior. The only problem you might have is the amount of pop-up's that you will receive to allow or block a certain action. You need also to be very careful what to block or not. So sometimes you need to use a search engine to know what is happening. If you see that a strange executable is trying to put itself in the registry, system folder you can block it. I mean for example a1ce856ddg.exe.

Using a sandbox is also a very good suggestion.

Regards
Niels
  #6  
Old August 26th, 2012, 11:00 AM
zfactor's Avatar
zfactor zfactor is offline
Massive Poster
 
Join Date: Mar 2005
Location: on my zx10-r
Posts: 4,274
Default Re: infection totally missed by ess

i update every software to the latest, use no plugins at all on this system as i said this is a system only used for things like purchases etc and windows 7 is 100% up to date.

i am going to give eset's hips a try but until then i am sandboxing my browsers now
__________________
Meatwad you're up next, with your knock-knock.
Meatwad make the money see. Meatwad get the honeys G. Drivin in my car, living like a star ice on my fingers and my toes, and im a taurus

"Some days your the windshield. Some days your the bug"
Eset ESS V6 / Webroot WSA / Avast! IS V8
  #7  
Old August 26th, 2012, 11:14 AM
Dark Shadow's Avatar
Dark Shadow Dark Shadow is offline
Massive Poster
 
Join Date: Oct 2007
Location: USA
Posts: 4,550
Default Re: infection totally missed by ess

I dont run any real time Anti Virus on windows but AppGuard and Full time Virtualization with Shadow Defender just in case and HitMan Pro to keep a eye on things with monthly scans.
__________________
OS X 10.8.3 - 2.9 GHz Intel core i7 - 8 GB 1600 MHz DDR3 - 750 SATA HD - Intel HD 4000 Graphics 512 MB.
  #8  
Old August 29th, 2012, 07:20 AM
encus encus is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 531
Default Re: infection totally missed by ess

Quote:
Originally Posted by zfactor
had a infection totally missed by eset a trojan. had my credit card web sites passwords stolen and they changed my mailing address' etc.. i always once a week run a scan with malware bytes and hitman. and hitman showed this up. ess scanned right over it.

sadly i guess i have to much faith in ess i still like it and i know its not 100% but eset was one of very few that missed this on virus total. i did submit it to eset but still a bit upset it was missed. i formatted and reinstalled a fresh copy of windows etc. so i no longer have the file and as i said i already submitted it. im going to see what will run and play nice along side eset but this all happened in one day with no notifications and i run scans daily with ess. honestly not sure where it came from either since i dont go to not so nice places and am VERY careful with this system as to what goes on it.
I feel your pain. I really hope Eset will fix this problem very soon so something like this won't happen again
  #9  
Old August 29th, 2012, 08:43 AM
Marcos Marcos is offline
Eset Moderator
 
Join Date: Nov 2002
Posts: 14,193
Default Re: infection totally missed by ess

Quote:
Originally Posted by encus
I feel your pain. I really hope Eset will fix this problem very soon so something like this won't happen again
Is there actually some security software that guarantees 100% malware detection with no or very few false positives? It is a matter of fact that new malware emerges on a daily basis and that the authors focus on evading detection by tweaking the code until it's undetected by the security vendors they focus on.
Zfactor, please pm me your email address or the subject of the email you used to submit the sample to ESET, or MD5/SHA1 hash of the sample so that I can look it up on files.
 

Wilders Security Forums > Official ESET Support Forum > ESET Home Users Products Forum > ESET Smart Security « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 08:50 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums