Zemana AntiMalware 2 BETA

Discussion in 'other anti-malware software' started by Emre TINAZTEPE, Jan 20, 2015.

  1. Overkill

    Overkill Registered Member

    Joined:
    Mar 16, 2012
    Posts:
    2,343
    Location:
    USA
    EXACTLY!
     
  2. busy

    busy Registered Member

    Joined:
    Apr 10, 2006
    Posts:
    419
    Restore from quarantine does not work for me, anyone else having the same problem?
     
  3. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,077
    Location:
    DC Metro Area
    I'm using the paid for version of Watchdog Anti-Malware Premium v. 2.60.186.1 (a rebranded Zemana Anti-Malware for a US marketing affiliate/authorized seller). After reading the latest in this thread I noticed that what is being complained about in this beta forum has already been made a part of the paid Watchdog: namely -- no more choice of Deep or Smart Scan and no option or even an alert before deleting files. I was shocked to see that, without any type of notification to me, WDAM had REMOVED a totally legit set-up file (Netgear Genie Set-Up.exe) and is blocking Game-First,an integrated component of ASUS ROG-GRs' set of gaming enhacnements.

    The only way I learned of these actions was by clicking on Real Time Protection under the Settings Menu. Although the page now says that these actions were taken as far back as July, today is the first time notiification of them appeared on the Real Time Protection Settings page. There is as of today a new section on that page named "History" There were two updates to Watchdog yesterday. In other words, WDAM had deleted or started blocking two programs months ago and today was the first time there was any indication of them. 00

    There is no record of these actions in the Logs, although they are listed as active links in the new History Section, that take me to the logs page.

    The merging of Deep or Smart Scan happened I guess yesterday, as I frequently scan and just noticed the change today.

    So it appears that what we don't love is here to stay.
     
    Last edited: Nov 14, 2016
  4. bellgamin

    bellgamin Registered Member

    Joined:
    Aug 1, 2002
    Posts:
    8,102
    Location:
    Hawaii
    Evidently Zemana is uninterested in our views. Ah well, there's always MBAM, wot?
     
  5. XhenEd

    XhenEd Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    536
    Location:
    Philippines
  6. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Maybe.....
     
  7. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Friday
    Monday: New update not released yet..............
     
    Last edited: Nov 17, 2016
  8. Magic_The

    Magic_The Registered Member

    Joined:
    Jun 24, 2015
    Posts:
    40
    Just bring the "ask user" option, thank you!!!
     
  9. G1111

    G1111 Registered Member

    Joined:
    May 11, 2005
    Posts:
    2,294
    Location:
    USA
    My lifetime version turned into free version (I am using portable). I tried reactivating license and that did not work. I sent feedback to developers last week and no response. Tried stable rather than beta and still it is "free version."
     
  10. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
  11. G1111

    G1111 Registered Member

    Joined:
    May 11, 2005
    Posts:
    2,294
    Location:
    USA
    Thanks anon. Hopefully it will be restored in next version. Will see what happens.
     
  12. TwinHeadedEagle

    TwinHeadedEagle Registered Member

    Joined:
    Nov 2, 2012
    Posts:
    86
    Regarding license activation problems, we are aware of this and it will be fixed in next release probably today or tomorrow. This happened while trying to make portable version always being free and setup version with option to activate real time protection. Some tiny thing slipped by, but it will be fixed.


    Regarding ask user option:

    This is because we have moved real-time detection code from user-mode to kernel-mode for security and stability.

    To suspend process in kernel-mode and wait for user input in user-mode is not a good practice, this is why many security products including Windows Firewall do not show question dialog for waiting kernel events (Process creation, Network connection etc.)

    Anyway your feedback is important for us and we'll think how we can implement it in a proper way and bring it back. We are monitoring this thread very closely and our software continues to grow with every bit of feedback that we receive.


    Thanks again!
     
    Last edited: Nov 15, 2016
  13. ghodgson

    ghodgson Registered Member

    Joined:
    Dec 20, 2003
    Posts:
    835
    Location:
    UK
    Thankyou very much for your input. I'm sure your comments about bringing back the 'ask user' option will be greatly welcomed by members here who use ZAM (like myself).
    Thanks again for an excellent product and for listening to us.
    Gordon
     
  14. paulderdash

    paulderdash Registered Member

    Joined:
    Dec 27, 2013
    Posts:
    4,644
    Location:
    Under a bushel ...
    Thanks for the explanation, good to know there is a reason beyond 'simplification'. Hope there is a way it can somehow be implemented.
     
  15. bellgamin

    bellgamin Registered Member

    Joined:
    Aug 1, 2002
    Posts:
    8,102
    Location:
    Hawaii
    +1!!! The explanation brought me back to the ZAM booster squad!
     
  16. catspyjamas

    catspyjamas Registered Member

    Joined:
    Jul 1, 2011
    Posts:
    288
    Location:
    New Zealand
    Zemana Antimalware is detecting a Firefox file which doesn't seem to be included in previous version of Firefox, but is present in the latest version 50.0. I have uploaded the detected file to virustotal, jottis & metadefender which produced zero detections. Why it is considered a PUA? I've tried doing some searching, but I'm unable to find out anything about this file and what it does. I've chosen the action "report as safe" (based on the results from virustotal etc), but I would like to know what the deal is. Copied from the log:

    Detected Objects
    -------------------------------------------------------

    Application Update Service Helper
    Status : Scanned
    Object : %programfiles%\mozilla firefox\browser\features\aushelper@mozilla.org.xpi
    MD5 : 9975C100511AD2BD3B4177B979663C22
    Publisher : -
    Size : 2691
    Version : -
    Detection : PUA.FirefoxExt!Gr
    Cleaning Action : Repair
    Related Objects :
    Browser Extension - Application Update Service Helper
    File - %programfiles%\mozilla firefox\browser\features\aushelper@mozilla.org.xpi

    It's actually in Program Files (x86).
     
  17. TwinHeadedEagle

    TwinHeadedEagle Registered Member

    Joined:
    Nov 2, 2012
    Posts:
    86
    That should be fixed :) Thanks!
     
  18. catspyjamas

    catspyjamas Registered Member

    Joined:
    Jul 1, 2011
    Posts:
    288
    Location:
    New Zealand
    Yup all fixed. Thanks!

    Zemana folk - thank-you for detecting the FF & Chrome WOT addons. If it weren't for ZAM detecting them they'd still be installed in my browsers & I'd still be completely unaware that my non-anonymised browsing history was potentially ending up goodness knows where. Your detection made me do some research, and I found an article on ghacks, and then a thread on here. I also saw the addon was pulled from both the Chrome and Mozilla stores, but they were not pulled from my system. Nor was anything communicated to me by WOT. Thank-you for being on the ball!
     
  19. taleblou

    taleblou Registered Member

    Joined:
    Jan 9, 2010
    Posts:
    1,349
    hi:

    please fix UAC warning issue with zemana antilogger. Each time I reboot the pc the win 10 UAC warning asks to allow zemana while other autostart apps load fine without triggering the UAC. Thanks.
     
  20. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    New update not released yet.............
     
    Last edited: Nov 17, 2016
  21. Tarnak

    Tarnak Registered Member

    Joined:
    Feb 5, 2007
    Posts:
    5,296
    I just ran a scan, and it found the following to be suspicious. I did a search in Google, and nothing comes up. I don't want to delete this unless I know what software it relates to.

    Sample CA
    Status : Scanned
    Object : HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\431298508C40B4DB5A090A272CE4FA429F1CE236\Blob
    MD5 : -
    Publisher : -
    Size : -
    Version : -
    Detection : Suspicious Root CA
    Cleaning Action : Delete
    Related Objects :
    Registry Entry - HKLM\SOFTWARE\Microsoft\SystemCertificates\ROOT\Certificates\431298508C40B4DB5A090A272CE4FA429F1CE236\Blob = 1900000001000000100000002167F922259FE0E5384E23E40EECFA010F000000010000002000000086CE6366ED926865791A34903558B1636FCD7564FBDFF21F3D4F44E77B6C4C93030000000100000014000000431298508C40B4DB5A090A272CE4FA429F1CE236140000000100000014000000407668024A1A4C703AD3CB199C66F2AD004E3C852000000001000000F6020000308202F2308201DAA003020102021100BD796FA32FE7EF2888C09EB4F0D082D3300D06092A864886F70D01010B05003021310B300906035504061302454E3112301006035504030C0953616D706C652043413020170D3936313131393135333132325A180F32303536313130343135333132325A3021310B300906035504061302454E3112301006035504030C0953616D706C6520434130820122300D06092A864886F70D01010105000382010F003082010A0282010100D102FAC59471F2454E80B9EE0861ED6BC62C3ADFC79948A74CAB6431221D7B71DF61AA005A245E6C3327CDA20D5C08ADB0D221FEB6341439CEDE4D10D764E688B7EABC1894335631312CF2BB7018C589BA265131A95E54F5632F511C7F64F87025A21B0F37AAF37258301DE0E6985740C2BC17B760F47B6CE2ABCE7C04BFF132729F8D8813A4A627589F2ADD6FF03882C301B842988C8437CF996BAC4B8052BA490037F68E5C534C9EDE75ED439B281AD72CE839E02E73464B10929AA8D1B67302BEB4E67D5BB38BFCA987818FFE16130E77DC73B89A042671727239F9C7B1DAD7E1B249C30F51A713DD9DD7F7EBA4617C90AE2C806AF2CEC304D8759E219FE10203010001A3233021300F0603551D130101FF040530030101FF300E0603551D0F0101FF040403020106300D06092A864886F70D01010B050003820101004DFFDFDDAADE707491DD4408F6C120391D0B21778F5F1A21A9E189B6F63B9F259222E027BCE6B6275EA982C07761671C56A415F6835136B2BB486A8E6B99AC5567CC4A10E44A6DA659B8A536137E4E9CFD15C40FED25898282D21167A2677749EECA9036A1B1E48C344BBD8764AB977DE541A2CDCD604473B968DBCE9B807CCDA2D0B4082CE1D2733C45FDE836FB14F882800732F9872B35A5A0EA4FF1132520B1E50547FC4A61C6157CA26E7381F06FC4C61EE9D1A168657F59F40F6284B3F89B4EAEBDF39337951C4FDDE7A6F8B74C70634ABB2B64E17DCE8DA047A6F03933898CDDD652231887F792E2CDF2A4E49855862105CB9D0E1D3355D3EDFD415443
     
  22. busy

    busy Registered Member

    Joined:
    Apr 10, 2006
    Posts:
    419
    https://www.zemana.com/WhatsNew/?ProductID=2

    Code:
    http://dl12.zemana.com/AntiMalware/2.60.1.63/Zemana.AntiMalware.Setup.exe
    http://dl12.zemana.com/AntiMalware/2.60.1.63/Zemana.AntiMalware.Portable.exe
     
  23. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
    Expected decision...
     
  24. anon

    anon Registered Member

    Joined:
    Dec 27, 2012
    Posts:
    8,005
    Removing "Deep Scan" option, removing "Ask user" option and now
    removing Pandora from portable version, removing the ZAM Premium portable version complete.

    I and many others we are waiting for the new version of ZAM Premium portable.
    And what we got? A slap from Zemana instead! Nice!

    For every one which wants to use the ZAM for on demand scan only =
    ZAM portable: without Pandora, is a half baked product.
    ZAM desktop:
    a) Use so much RAM for nothing.
    b) Starts when windows start.
     
  25. siketa

    siketa Registered Member

    Joined:
    Oct 25, 2012
    Posts:
    2,718
    Location:
    Gaia
    IMHO portable version should be a scanner only.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.