Ewido update

Discussion in 'other anti-trojan software' started by se7engreen, Aug 4, 2004.

Thread Status:
Not open for further replies.
  1. Blackcat

    Blackcat Registered Member

    Joined:
    Nov 22, 2002
    Posts:
    4,024
    Location:
    Christchurch, UK
    I am getting to like Ewido as every minute passes :D :D :D
     
  2. se7engreen

    se7engreen Registered Member

    Joined:
    Feb 6, 2004
    Posts:
    369
    Location:
    USA
    There is a website that contains near 1000 different trojans for download that I use to test detection ability and how the prog responds to threats. I've downloaded about 100 random trojans and Ewido's picked them all up so far. It has nailed 95% of them before I can choose a place to save the trojans when downloading. Upon detection, the alert screen pops up and asks what action to take and there's a checkbox to keep an encrypted backup in quarentine. Is there a way have that checkbox unchecked by default? If I haven't even downloaded the trojan yet, there's no point in filling the quarentine with temp files (or is there?). Also it frequently says that to complete cleaning I need to reboot. What's that about?

    Couldn't say it any better... :)
     
  3. rerun2

    rerun2 Registered Member

    Joined:
    Aug 27, 2003
    Posts:
    338
    Has anyone noticed any conflicts with Ewido's guard and other AT's resident protection (TDS execution protection, Trojan Hunter's resident guard, BOClean etc)? I know they are mentioned as being compatible in ewido's compatibility list, but I was wondering if this is one of those things where it isnt good to run 2 at the same time (like AV's and software firewalls) or if it is effective in providing any more protection than say the AT's i mentioned.

    Some more questions and comments...

    Will you be bringing back some of those extra features like eraser and antispy?

    Any plans for home licenses like the one used with BOClean or the one offered by DiamondCS' PG/CS?

    I also agree that the security bar is rather confusing.
     
  4. se7engreen

    se7engreen Registered Member

    Joined:
    Feb 6, 2004
    Posts:
    369
    Location:
    USA
    Currently running it along with KAV 5.0.142 and Tiny Firewall 6.0.100 with no problems. Also had it on a test machine with F-Prot 3.15 and all was good there. Will probably test with Avast tonight.
     
  5. Firefighter

    Firefighter Registered Member

    Joined:
    Oct 28, 2002
    Posts:
    1,670
    Location:
    Finland
    To everyone from Firefighter!

    Just compared Ewido to DrWeb 4.31b and NOD32 2.000.11b upd 1.834 with AH (= beta) against my 568 trojan like malwares and 457 worms, total 1025 nasties.


    Ewido

    811 [441 trl (345 bkd&trj, 24 exp, 15 tdl, 40 tdp, 17 tjs) + 370 wrm]


    DrWeb 4.31b

    868 [439 trl (312 bkd&trj, 30 exp, 22 tdl, 59 tdp, 16 tjs) + 429 wrm]


    NOD32 2.000.11b upd 1.834 with AH (= beta)

    794 [420 trl (308 bkd&trj, 26 exp, 21 tdl, 54 tdp, 11 tjs) + 374 wrm]



    where

    trl = trojan like malware

    bkd&trj = backdoors & trojans

    exp = exploits

    tdl = trojandownloaders

    tdp = trojandroppers

    tjs = trojanspy

    wrm = I-, IRC-, P2P-, Win32- and mIRC-Worms


    Not bad at all with Ewido in trojans compared to DrWeb 4.31b and NOD. Against worms Ewido is even close to NOD with AH.


    Best regards,
    Firefighter!
     
    Last edited: Aug 6, 2004
  6. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
    Excellent question. I was wondering the same thing.

    Also, might be a good idea to bring back that feature chart, assuming you were able to implement everything.
     
  7. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    As soon as all current bugs are fixed we're going to rework the tools and release some new ones which will replace the old tools. Also a feature table will be available shortly but currently hasn't high priority :)
     
  8. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
    Here's a bug for you fish. Installed and ran Ewido, might have run into a conflict so I disabled File Monitoring, Hijacker Protection and Automatic Updates. Re-ran and decided to uninstall so I could figure out what was going on.

    Reinstalled today and those 3 options on status are disabled (actually they say n/a) and cannot be re-enabled.
     
  9. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    Jup, it's bug and will be fixed with the next setup.
     
  10. gerardwil

    gerardwil Registered Member

    Joined:
    Jan 17, 2004
    Posts:
    4,748
    Location:
    EU
    I run CWS lastnight and my macine stuck. I needed 2 fresh starts to settle everything. Any connection to Ewido?
     

    Attached Files:

    • cws.gif
      cws.gif
      File size:
      24.4 KB
      Views:
      718
  11. Optimist

    Optimist Registered Member

    Joined:
    Nov 6, 2002
    Posts:
    90
    I have the same problem!
     
  12. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
  13. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
    Fish, on e additional thing worth adding is whether or not "scan with ewido" is added to the right click context menu.
     
  14. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    Already on our list :)
     
  15. chachazz

    chachazz Updates Team

    Joined:
    Apr 23, 2004
    Posts:
    841
    hi fish: I am pleased with this new prog. No conflicts whatsoever with all the security on my machine and it found 1 tracking cookie.
    :D
     
  16. Optimist

    Optimist Registered Member

    Joined:
    Nov 6, 2002
    Posts:
    90
    Yes, this is the same fault. I am well a new member of the club there. :D

    I apologize for my bad English. I use a translation program.
     
  17. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
    No worries. I'm a native English speaker and mine is horrible. :D

    Fish, one other thing I've noticed... since installing, with and without the guard enabled is a 1-2 second hesitation on all operations.
     
  18. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    With and without enabled? Very interesting!
    What are your system specs? What additional software have you got installed?
    Which filesystem? Thanks a lot! :)
     
  19. Optimist

    Optimist Registered Member

    Joined:
    Nov 6, 2002
    Posts:
    90
  20. Optimist

    Optimist Registered Member

    Joined:
    Nov 6, 2002
    Posts:
    90
    There is a new version of ewido. It solves my problem.
     
    Last edited: Aug 7, 2004
  21. Blackcat

    Blackcat Registered Member

    Joined:
    Nov 22, 2002
    Posts:
    4,024
    Location:
    Christchurch, UK
    New Version? Version 2?

    It would be a help if the recent program version (and database version ) appeared BOTH on the website and in the main GUI.

    How do we know when a new version is available, as opposed to a patch or a 'threat' upgrade?.

    At the present time I have database version # 614 and 58022 known threats in database so I presume I am up to-date?

    Does the Updater install just definitions or engine upgrades as well?

    Eventually, related to the above, it would be nice to see some sort of log-file where we can see what has been updated during a particular update session.
     
  22. tazdevl

    tazdevl Registered Member

    Joined:
    May 17, 2004
    Posts:
    837
    Location:
    AZ, USA
    Same behavior on 2 comps:

    Desktop: P4 @ 3.6G, 1GB RAM, WD Raptors Raid 0, XP Pro SP1 fully patched, ZA Pro 4.5, NOD32

    Laptop
    P4M 1.8G, 768MZB RAM, 5400RPM 40GB HD, XP Pro SP2 RC2, ZA Pro 4.5, NOD32

    Had SpySweeper 3.0 Installed but uninstalled before installing Ewido.
     
  23. gerardwil

    gerardwil Registered Member

    Joined:
    Jan 17, 2004
    Posts:
    4,748
    Location:
    EU
    Yep, it's gone here too :)
     
  24. dannyboy 950

    dannyboy 950 Registered Member

    Joined:
    Jan 7, 2003
    Posts:
    50
    Well whatever it was that was trying to shut ewido down the last update seems to have cured. Since installing the update I haven't received that pop up anymore.

    Altho it really would have been nice to know what it was.
    I hate it when things fix themselves, they useually turn out to be not fixed at all and come back to bite ya in the butt later.
     
  25. peter.ewido

    peter.ewido former ewido team

    Joined:
    Nov 10, 2003
    Posts:
    737
    Location:
    Brno, Czech Republic
    We simply removed the message as it produced too many "false positives".
    Unfortunately some programs (like for example CWShredder) want to have kill-access to ALL running applications (don't know why)... Anyway the ewido guard can't be killed so I don't think it's a problem :)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.