Strange logged events

Discussion in 'NOD32 version 2 Forum' started by jayt, May 14, 2005.

Thread Status:
Not open for further replies.
  1. jayt

    jayt Registered Member

    Joined:
    Aug 30, 2004
    Posts:
    345
    Location:
    PA - USA
    statistical information sent to Eset

    I found this entry in my event log. I have no idea what it is about. If it is from th e ThreatSense Net Early Warning System, I have that set but it is supposed to ask before sending. A mystery?
     
  2. snowbound

    snowbound Retired Moderator

    Joined:
    Feb 18, 2003
    Posts:
    8,723
    Location:
    The Big Smoke
    I see 4 of these in my Event Logs today,

    Time Module Event User
    5/14/2005 13:58:29 PM Kernel Statistical information has been sent to Eset.

    Running NOD32 2.5

    Never seen any such entries in last version of NOD32.

    Anyone know what or why this info is being sent to Eset?


    snowbound
     
  3. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,764
    Location:
    Texas
    Did you look here? :D
     

    Attached Files:

  4. snowbound

    snowbound Retired Moderator

    Joined:
    Feb 18, 2003
    Posts:
    8,723
    Location:
    The Big Smoke
    Yes i did but i'm not convinced that's what's happening here. ;) :D

    I have that option set to ask first and this info(whatever it is) is being sent without alerting me first. Seems this info is not about threats so i'm curious why or what is being sent.


    Steve
     
  5. Blackspear

    Blackspear Global Moderator

    Joined:
    Dec 2, 2002
    Posts:
    15,115
    Location:
    Gold Coast, Queensland, Australia
    I just checked my logs, and I have the same thing, though being in your future we were naturally ahead of you guys ;) :D

    Time Module Event User
    15/05/2005 8:27:22 AM Kernel Statistical information has been sent to Eset.

    Cheers :D
     
  6. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    57,764
    Location:
    Texas
    I did notice Secunia is involved. This from clicking on a link in the help file.
     

    Attached Files:

  7. Matt_Smi

    Matt_Smi Registered Member

    Joined:
    Jul 7, 2004
    Posts:
    359
    I do not have the early warning system turned on yet anyway. But I was wondering if you needed the Mircosoft.Net framework installed to use it, or is it just called ThreatSense.Net for another reason?
     
  8. cliff

    cliff Registered Member

    Joined:
    Dec 4, 2004
    Posts:
    42
    In advanced settings in the Threatsense.net tab, the Statistics tab has an option to tick "enable submission of anonymous statistical information". also the option how you want to send it. This seems to be independent of the threat of sending information about suspicious files.
    The beta version was sending this info also.....my log

    Time Module Event User
    14/05/2005 18:08:44 Kernel The virus signature database has been successfully updated to version 1.1096 (20050514).
    14/05/2005 17:55:11 EMON Unable to load module (2). NT AUTHORITY\SYSTEM
    14/05/2005 13:10:36 Kernel Statistical information has been sent to Eset.
    13/05/2005 21:47:35 Kernel Statistical information has been sent to Eset.
    13/05/2005 19:08:24 Kernel The virus signature database has been successfully updated to version 1.1095 (20050513).
    13/05/2005 15:11:20 Kernel Statistical information has been sent to Eset.
    13/05/2005 15:09:49 Update NOD32 program components have been updated successfully. For changes to take effect, a computer restart is required.
    13/05/2005 15:08:16 Kernel Statistical information has been sent to Eset.
    12/05/2005 15:58:00 Kernel The virus signature database has been successfully updated to version 1.1094 (20050512).
    12/05/2005 15:47:52 Kernel Statistical information has been sent to Eset.
    12/05/2005 14:56:57 Kernel Statistical information has been sent to Eset.

    Anyone understand the module problem with EMON or should i submit it to ESET!!
     
  9. snowbound

    snowbound Retired Moderator

    Joined:
    Feb 18, 2003
    Posts:
    8,723
    Location:
    The Big Smoke
    Ok thanks, i'll untick that paticular option as i, myself , am not too fond of this type of info(whatever it is) being sent to Eset, Secunia or anywhere else for that matter, without my permission....


    snowbound
     
  10. Marcos

    Marcos Eset Staff Account

    Joined:
    Nov 22, 2002
    Posts:
    14,374
    There's an example of the statistical information submitted in the help files, if you are not sure what information is submitted. The more people turn off submision of statistical information, the slower Eset will react to new threats.
     
  11. izi

    izi Registered Member

    Joined:
    Jan 19, 2004
    Posts:
    354
    Location:
    Slovenia
  12. izi

    izi Registered Member

    Joined:
    Jan 19, 2004
    Posts:
    354
    Location:
    Slovenia
    Hello Marcos!

    Why ESET doesn't implement this statistical information like in NOD32 Scanner log. Everbody will see what information is sent to ESET.

    Regards,

    Izi
     

    Attached Files:

    • log.jpg
      log.jpg
      File size:
      24.6 KB
      Views:
      336
  13. manOFpeace

    manOFpeace Registered Member

    Joined:
    Feb 1, 2003
    Posts:
    716
    Location:
    Ireland
    Na, don't like that. :mad:
     
  14. NOD32 user

    NOD32 user Registered Member

    Joined:
    Jan 23, 2005
    Posts:
    1,766
    Location:
    Australia
    NOD32 2.5 Control Centre --> NOD32 System Tools --> NOD32 System Setup --> Setup --> ThreatSense.Net --> Advanced settings --> Suspicious Files
    is what you have set to ask first, but
    NOD32 2.5 Control Centre --> NOD32 System Tools --> NOD32 System Setup --> Setup --> ThreatSense.Net --> Advanced settings --> Statistics
    is what is causing the entry in your log here.
     
  15. snowbound

    snowbound Retired Moderator

    Joined:
    Feb 18, 2003
    Posts:
    8,723
    Location:
    The Big Smoke
    Yes, thanks. :)

    I unchecked that option a few days ago.


    snowbound
     
Thread Status:
Not open for further replies.