antivirus

Discussion in 'ESET Smart Security v3 Beta Forum' started by pykko, Apr 6, 2007.

Thread Status:
Not open for further replies.
  1. fosius

    fosius Registered Member

    Joined:
    Oct 14, 2004
    Posts:
    479
    Location:
    Partizanske, Slovakia
    Settings -> Antivirus protection -> Resident protection -> Run editor of extensions -> And Metods..

    But I use Slovak version so the translation doesn't have to be the same..
     
  2. Alith

    Alith Registered Member

    Joined:
    Oct 30, 2004
    Posts:
    69
    Thanks for the link to Beta MNKid.
     
  3. rogervernon

    rogervernon Registered Member

    Joined:
    Jul 16, 2006
    Posts:
    289
    The anti-virus failed to detect this Eicar test file, sent as an attachment to an email from Panda. The event did not appear in the log files either.
    Here is`a screen shot pf part of Panda's email to me, showing the test as a Word document as the attachment. When executed , Word opens & shows a small picture labeled "Eicar"
    http://i115.photobucket.com/albums/n297/penfro/EicarTest.jpg
     
  4. cupez80

    cupez80 Registered Member

    Joined:
    Jun 28, 2005
    Posts:
    617
    Location:
    Surabaya Indonesia
    that not what i mean. in version 2.x even you activated Advanced Heuristic it wont scan file on-execution. what im asking is AH enabled on-execution not only on-create and on-modification :D
     
  5. Sjoeii

    Sjoeii Registered Member

    Joined:
    Aug 26, 2006
    Posts:
    1,240
    Location:
    52?18'51.59"N + 4?56'32.13"O
    Strange it was detected over here.
    Can't confirm
     
  6. lucas1985

    lucas1985 Retired Moderator

    Joined:
    Nov 9, 2006
    Posts:
    4,047
    Location:
    France, May 1968
    Are you allowed to share more info about this with us?
    Thanks for this feedback ;)
     
  7. Brian N

    Brian N Registered Member

    Joined:
    Jul 7, 2005
    Posts:
    2,174
    Location:
    Denmark
    Panda sends a doc file and if you take a look inside, the eicar code actually changes and so does the file size.
    I've never been able to detect anything sent from Panda myself while using NOD32.
    You need either a txt, com or an archive. You can also try this one instead: http://nod32sse.com/avtest.php
     
  8. Firecat

    Firecat Registered Member

    Joined:
    Jan 2, 2005
    Posts:
    8,251
    Location:
    The land of no identity :D
    I wasn't told too much about it anyway, but there was talk about a "special cleaning" mechanism, which would be able to at least partially remove even unknown malware (i.e. heuristic detections). Registry entries of even heuristic detections may be cleaned and perhaps other leftovers too. :)
     
  9. lucas1985

    lucas1985 Retired Moderator

    Joined:
    Nov 9, 2006
    Posts:
    4,047
    Location:
    France, May 1968
    Thanks Firecat :)
     
  10. ASpace

    ASpace Guest

    Oh , no , I tried this test of theirs while I was using their products (Titanium and Platinum 2005/2006) . I always received the email and it never got detected by Panda . Which is very silly because they say "if your securiry products misses it then buy our products" ... :D and a loopback ... Tests on eicar.org always work with all AVs but in a DOC , the strings gets changed , I think
     
  11. Doc Serenity

    Doc Serenity Registered Member

    Joined:
    Apr 4, 2007
    Posts:
    105
    This could definitely mess with my serenity. If I unserstand you correctly, the av I'm using and really like has not been able to deal w/Panda's tests.
    I'm suddenly feeling more than a little concerned.
    Doc
     
  12. Brian N

    Brian N Registered Member

    Joined:
    Jul 7, 2005
    Posts:
    2,174
    Location:
    Denmark
    It won't detect it because it's not an eicar test after it's been altered by the doc. If they made regular txt or archives, there wouldn't be a problem with their tests.

    And there's no need to worry really - Normal eicar tests are detected by NOD32 just fine.
     
  13. Doc Serenity

    Doc Serenity Registered Member

    Joined:
    Apr 4, 2007
    Posts:
    105
    Thank you.
    All better now.
    Doc
     
  14. rogervernon

    rogervernon Registered Member

    Joined:
    Jul 16, 2006
    Posts:
    289
    I re-loaded AVG anti spyware and on a scan it found this:- Win32.Worm.Luder.
    This had not been found by either ESS or KIS on regular scans.
    Could it have been lurking in Sys Restore? Can ESS scan there?
    Or is it a "falsie"?
     
  15. ASpace

    ASpace Guest

    Don't know where it is , you only know . Yes , ESS can scan there.


    Have no idea , may be . VirusTotal knows more for sure . If it appears to real malware , send a copy of it to ESET Virus Lab to email samples @ eset . com
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.