![]() |
|
#76
|
|||
|
|||
|
Quote:
For example, when I download zipped sample of eicar test file , EAV didn't recognize enything (even when browsing that folder) until on demand scan of that file. Even with eicar.exe file.
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#77
|
||||
|
||||
|
Quote:
It didn't even let me connect nevermind download it:
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#78
|
|||
|
|||
|
Quote:
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#79
|
||||
|
||||
|
I'm using v3 which doesn't have SSL support, if it's not working for you in v4 with SSL scanned, then it's a beta problem.
None-the-less I downloaded the file anyway, extracted it to be met with another zip, then extracted it again to have it quarantined.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#80
|
|||
|
|||
|
Quote:
and without extracting? btw...default settings for real-time protection and excluded browser in web protection?
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#81
|
||||
|
||||
|
Quote:
It's not harmful without extracting.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#82
|
|||
|
|||
|
Quote:
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#83
|
||||
|
||||
|
Quote:
Conflicting questions, why should I exclude the browser in web protection, that's a feature enabled by default. No, I've turned advanced heuristics on, but that wouldn't change the outcome of this.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#84
|
||||
|
||||
|
Quote:
It does, how have you proved it doesn't? The file is in archive form. There is NO way you can access it without nod32 scanning it first.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#85
|
|||
|
|||
|
Quote:
Fact is that I don't want garbage on my hard drive, because AV isn't capable to scan files in real-time! With oher AV (see signature) file is deleted when browser try to save it on HD...even without browsing that folder and without web module active...and without extracting...real-time guard picked it up in the fly. I'm talking about that.
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 Last edited by wrathchild : January 28th, 2009 at 10:05 PM. |
|
#86
|
||||
|
||||
|
Quote:
If archives were scanned in real time, it would cause SERIOUS issues. If I browsed to a folder full of archives the thing would literally die. Scanning archives in real-time is useless. Unless you're talking about runtime packers, which is a feature. You wouldn't download an archive unless you were going to open it to use it, so your statement is flawed and totally incorrect.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#87
|
||||
|
||||
|
Quote:
Other AV's (such as your precious Avira here I assume you're talking about) love to compete in the "rush to bloat up their DB" and add the signature of the zip file itself, they do not scan inside the zip files in real time. ESET keeps it's DB small and simple and relies more on heuristics since it is the future.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#88
|
|||
|
|||
|
Quote:
![]() Point is that with EAV "limited" real-time protection you should have integration in WLM.
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#89
|
|||
|
|||
|
Quote:
![]() I dont have any precious AV's...i just point some things which is bad in EAV.
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#90
|
||||
|
||||
|
Quote:
Read my previous post, it shows the connection of the archive download being terminated, archives are scanned in real time for the HTTP module. Quote:
Bad, that's why it's off by default and why I don't use it, but you're proving my point here why archives shouldn't be scanned in real time Quote:
I think I've said more than enough to prove that this isn't needed. Last I checked, you can't send exe files over msn. If you received a zip file, it would be to open it, and which point, bang = virus detected and blocked. As far as I see, am I right in saying: You want a feature to automatically perform an On-Demand scan on archives because they are not scanned in real time out of the HTTP module(on the system)? Or you think msn should be in the HTTP module? BTW I think you can tick it in web browsers to achieve this effect, not sure..
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#91
|
|||
|
|||
|
Quote:
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 Last edited by wrathchild : January 28th, 2009 at 10:31 PM. |
|
#92
|
|||
|
|||
|
Quote:
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#93
|
|||
|
|||
|
Quote:
).
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 Last edited by wrathchild : January 28th, 2009 at 10:43 PM. |
|
#94
|
||||
|
||||
|
Quote:
Uh... if you wanted to do that you would just disable your AV. If you didn't, this would happen: Quote:
Am I typing this wrong or what because it's the third time I'm trying to prove to you it wouldn't get downloaded in the first place.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#95
|
|||
|
|||
|
Quote:
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 |
|
#96
|
||||
|
||||
|
Quote:
...again...v4?
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#97
|
||||
|
||||
|
Quote:
You're basically complaining because you've disabled a feature that would scan inside zip files and now want a feature that scans inside zip files. Here is an idea, don't disable it? If it doesn't work for you, that's a BETA problem you should make a NEW thread about. I've presented the evidence, tried to prove my case the best I can, it's up to you what you want to make of it. I've had enough.
__________________
OpenDNS with DNSCrypt SSD: Windows 8 Pro x64 | IE10 (Enhanced Protected Mode) & Fanboy's TPLs HDD: Xubuntu 12.04 LTS (x64) | Firefox: ABP(Fanboy's list) & HTTPS Everywhere |
|
#98
|
|||
|
|||
|
Quote:
And to be clear enough...I'm talking now about real-time module...not about web module for which mods suggest to be disabled for some applications (...put the cross in the box...etc) as a workaround in some cases.
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 Last edited by wrathchild : January 29th, 2009 at 07:01 AM. |
|
#99
|
||||
|
||||
|
Quote:
Best regards |
|
#100
|
|||
|
|||
|
For me, web module should be implemented in a modular way. So users who wants proxy (or have better feeling of security with it) can install it and users who wants granularity in their firewall rules (on Win XP) can install EAV without it.
But real-time module must be capable to catch viruses prior to downloading on hard disk, in both cases (even in archives).
__________________
Win 8 64-bit / EAV 6.0.308.0 / Look 'n' Stop 2.07 Last edited by wrathchild : January 30th, 2009 at 12:19 PM. |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|