Jump to content

bgelfand

Members
  • Content Count

    165
  • Joined

  • Last visited

Everything posted by bgelfand

  1. Thank you Richbuff. I'll start with my Windows 7 x64 machine. As usuall, I will take a System Image Backup before I begin, "just in case".
  2. ... to install KAV 2013? I am responsible for four different computers - mine running Windows 7 x64 SP1, my Significant Other's running Vista x86 SP2, a friend's computer, about 100 miles away from me, running Windows7 x86 SP1, and my sister's computer, about 1000 miles away, running Vista x86 SP2. All computers are fully patched. All are still running KAV 12.0.0.374, without any problems. Kaspersky usually release new versions in the August/September time frame. I usually wait until the December/January time frame to update to give Kaspersky time to patch any problems. (I check this forum to see what problems exist.) For Version 13, however, Kaspersky is still releasing major patches - the last being Patch H just last month. Patch H seems to mostly involve Windows 8 and IE 10, which would not affect us. The licenses for all the machines will expire in the next few weeks; I have new licenses for all the machines. Is it safe to upgrade to version 13 or should I simply install the new licenses on 12 and wait for version 14? Since a bug in the anti-virus program can bring a computer to its knees and my require hands on to fix, I am reluctant to install an unstable KAV. Hands on is no problem with my machine or my Significant Other's, even my friend's computer 100 miles away is not a real problem, but my sister's computer at 1000 miles distance presents a logistical problem.
  3. I, too, am having the problem. When I looked through the update log in the Detail Reports, I found an entry for the 8.9 megabyte update that said, "Update files are corrupted http://dnl-03.geo.kaspersky.com/bases/wmuf/wmuf0045.dat 2/5/2013 4:30:07 PM" "Error updating component WMUF 2/5/2013 4:30:07 PM" After that, the log shows a considerable number of files that have been updated. This was an automatic update and executed shortely after I booted my computer this afternoon. I have run update manually several times, but to no avail. The updates seem to process correctly with a very small amount of data downloaded, but the problem remains. "Update: completed 19 minutes ago, update size: 849 bytes, average speed: 10 KB/sec (9) Update: completed 26 minutes ago, update size: 849 bytes, average speed: 8 KB/sec (9) Update: completed 27 minutes ago, update size: 2.9 KB, average speed: 16 KB/sec (11) Update: completed 28 minutes ago, update size: 849 bytes, average speed: 5 KB/sec (8) Update: completed 28 minutes ago, update size: 849 bytes, average speed: 10 KB/sec (8) Update: stopped 29 minutes ago (6) Update: completed 29 minutes ago, update size: 2.2 KB, average speed: 11 KB/sec (13) Update: completed 58 minutes ago, update size: 8.8 KB, average speed: 13 KB/sec (32) Update: completed 1 hour ago, update size: 74.0 KB, average speed: 15 KB/sec (204)" I am running KAV 12.0.0.374(I) [i think it is (I), it could be a lower case "L"] under Windows 7 x64 SP1 with the latest security patches. Now what do I do?
  4. Also, I just had the same thing happen on a freind's computer. I installed the latest Microsoft patches; when the computer rebooted, the Kaspersky gadget came up gray. She is running Windows7 x86 (32-bit) SP1 with the latest patches and KAV 12.0.0.374i (or perhaps it is 12.0.0.374j it is very hard to tell. I wish Kaspersky would use upper case letters). Clicking on the Kaspersky "K" in the systray opened a green panel which said the "Computer is Protected". I ran an update; that will usually reset the gadget. This time it did not. I shutdown and started the computer again. This time the gadget was green with the check mark. It appears to be a timing problem depending upon when the gadget is displayed during the boot cycle. edit: also,
  5. Thank you very much, Lucian. That answers my question. I'll feel much safer when Adobe patches the vulnerability, but in the mean time it is good to know that KAV is providing some protection. Of course, I will NOT be opening any TIFF or any other files from unknown or untrusted sources.
  6. Thank you for your reply, Lucian. Soon after I posed my question here Adobe updated the bulletin to include a promised update for CS5. I will be covered once the update is available. At the time I posed my question the bulletin read as follows: "Adobe has released Adobe Photoshop CS6 (paid upgrade), which addresses these vulnerabilities. For users who cannot upgrade to Adobe Photoshop CS6, Adobe recommends users follow security best practices and exercise caution when opening files from unknown or untrusted sources." More and more often third party programs, notably Adobe programs such as Reader and Flash and now Photoshop, seem to be a preferred vector used to introduce malware on a target computer. I am sure Kaspersky, and other anti-virus programs, can scan PDF, Flash, and Image files. My question is does Kaspersky do so now? Or does KAV simply verify that the files is a data type file and cease scanning?
  7. On 8 May 2012, Adobe issued a security bulletin discussing a vulnerability in Photoshop CS5 and previous version that is triggered by a malicious TIF file. Adobe's solution is to have the user purchase, at a cost of $200 or more, the latest release of Photoshop - one that was just released in the past few weeks. The only other Adobe solution is that the user "follow best security practices". If interested, you may read the security bulletin here: http://www.adobe.com/support/security/bull.../apsb12-11.html My question is, does Kaspersky examine TIF files closely enough to find a malicious TIF file - either when downloaded or when accessed? In fact, does Kaspersky even examine TIF files, since they are data files and should not contain execuitable code?
  8. I had exactly the same error message today running KAV 12.0.0.374(h). Since it had something to do with updates, I ran UPDATE. The problem resolved itself;Kaspersky is back running with a "Green Screen". Here are my log entries: Kaspersky Anti-Virus Protection is enabled 4/28/2012 6:09:57 PM Kaspersky Anti-Virus Update Task completed 4/28/2012 6:09:56 PM Kaspersky Anti-Virus Protection is not running 4/28/2012 6:09:56 PM Kaspersky Anti-Virus Web Anti-Virus Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus 4/28/2012 6:09:56 PM Kaspersky Anti-Virus 4/28/2012 6:09:56 PM Kaspersky Anti-Virus System Watcher Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus Proactive Defense Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus Mail Anti-Virus Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus IM Anti-Virus Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus File Anti-Virus Task started 4/28/2012 6:09:56 PM Kaspersky Anti-Virus Update Task started 4/28/2012 6:09:24 PM Kaspersky Anti-Virus Rootkit Scan Unable to start tasks 4/28/2012 6:08:42 PM Kaspersky Anti-Virus File Anti-Virus Unable to start tasks 4/28/2012 6:08:08 PM Kaspersky Anti-Virus Protection is not running 4/28/2012 6:07:52 PM Kaspersky Anti-Virus Invalid key 4/28/2012 6:07:52 PM The only task I had done out of the ordinary was to ugrade Quicken from Release 9 to Release 12. I intend to run a full scan tonight, just to be sure. I intend to run a full scan tonight, just to be sure.
  9. "My (brand new) hard disk (ST2000DM001) chirps regularly with Kaspersky enabled" You have run MEMTEST, but now try running CHKDSK. Be sure to test the the free disk as well as the file system (i.e. check both boxes on the CHKDSK reuqest).
  10. I am running KAV 2012 under Windows 7 x64 SP1 with the latest patches on an i7-860 system with 8 GBytes of RAM. Lately I noticed a system slow down. Looking at the System Monitor, I saw the system disk (C:) was in heavy use. It KAV pages considerably - even with well over 2 GBytes of memory free, and over 5 GBytes Available (I do wish Kaspersky would write KAV as a full 64-bit application and make extensive use of all the memory on my system rather than page). It also is a heavy I/O user (under I/O OTHER). DISKKEEPER, my disk degragmenter, is another disk intensive user - both I/O and paging. I set KAV to "Concede Resources" which ameloriated the high disk use problem. The description of Concede Resources on the Setting page describes ths option as "This feature postpones scehduled scan tasks..." which I interpret to mean tasks such as Root Scan and Idle scan, but not scans such as Access Scans, Web Scans, e-mail Scans, etc. But this is just my intrepretation; it is not explicitly stated. The KAV Help File is ambiguous about what is postponed stating, "By default, if such a situation [increased load on CPU or disk] arises, Kaspersky Anti-Virus pauses virus scan tasks and releases system resources for the user's applications." This suggests all scans are paused, which would leave a security hole. So, what is paused - just the scheduled scans or everything? Do I reduce security by checking the Concede Resources option?
  11. Thank you Dawgg. I saw the 10, but for some reason was looking for 12. I take it, although I am running KAV 12, Rescue Disk 10 is the "latest and greatest".
  12. I installed KAV 12 and while reading the documentation, I came upon the description of the Rescue Disk. Thjis sounds like a very good utility to keep around and know how to use. Both 1he help file and User Manual state, "For detailed information about the use of the Rescue Disk, please refer to the Kaspersky Rescue Disk User Guide." I have searched under documentation on the Kaspersky site, but cannot find it. Where does one find the Kaspersky Rescue Disk User Guide ?
  13. I decided to upgrade to KAV 2012 and went to download it. Depending upon whick Kaspersky site I go to, I find different install files. If I follow the link in the second topic of this forum, I arrive here http://www.kaspersky.com/kav_latest_versions and download file KAV12.0.0.374en.exe which is 78,266KB in size. If I go to the Kaspersky USA.Kaspersky.com site here http://usa.kaspersky.com/downloads/product-updates , I download file KAV2012_12.0.0.374-2487en_us.exe which is 158,361KB in size. (quite a difference in the size of the two files) Right clicking on the files choosing PROPERTIES and DIGITAL SIGNATURES show they both signed by Kaspersky Labs with valid certificates, so I assume both files are legitimate. So which file should I install? (I do live in the U.S.A.) Or should I simply wait a few weeks and hope KAV12.0.1.xxx will be released?
  14. Each morning when I turn on the computer, the first thing I do is a manual update of the Kaspersky virus signature files. This pops the Kaspersky Update Center which, among other things, shows the number of signatures. This number usually increases, which is logical - new malware is being written all the time. The past few days, the update files have been large, from 600k to over 1 Meg, and the number of signature has decreased from over 6,100,000 signatures to now just under 6,000,000 signatures. Is this normal or do I have a problem? I would expect the number of malware programs and signatures to increase not decrease over time. I am running Kaspersky AV 11.0.2.556 (yes, I know 12 is out. I am waitng for the next big fix, probably in November/December, then I will upgrade) Unless I missed an anoucement, the current signature files should work with 11.0.2.556.
  15. No, do not install the CD which probably has the base release of KIS 2011. Instead go here http://www.kaspersky.com/kis_latest_versions download the latest version with Critical Fix 2 incorporated, and install it.
  16. Today, I upgraded. First, I took a System Image Backup, just in case. Then I exited, KAV 7.0.0.736 and uninstalled it. I retained the activation data, an option of the uninstall. Next, I installed KAV 11.0.2.556. The install process found the license left from the previous version. There was one "What the Heck" moment when the install disabled the Windows Firewall. Since, I was installing KAV, not KIS, I wondered what was happening. My computer is behind a NAT'ed router. The router acts like a hardware firewall; it does statefull inspection of packets, so I was not completely unprotected. The databases, of course, were "Out of Date". I ran an update; Kaspersky download over 58 Megabytes of updates. The databases stayed out of date. I checked the logs; one of the files downloaded was corrupt. I ran update again. This time Kaspersky downloaded 300 KB of data and successfully updated the databases. I checked that the Windows Firewall was back up, that I could access the net with my browser, and get my e-mail. I shutdown and booted to be sure Kaspersky came back up. Everything looked good. It's amazing how easy an upgrade can be when you follow instructions (and the official instructions have beeen updated to say "uninstall the old version first" - something the experts on the forum have been saying for years.) After an hour or so of running normal workloads, I took another System Image Backup. Then I started Windows Update, selected Service Pack 1 as my only update, right clicked the Kaspersky "K" in the systray, selected "EXIT', took a deep breath and clicked "Install" in Windows Update. The install was uneventfull - the best type of install. My thanks to Richbuff, MoxieMomma, and Danikla for all their help.
  17. @Richbuff: Thank you for combining my querry with the previous posts; I do not know how I missed them. Thank you also for quoting Danilka's post and link to the knowledge base. I shall certainly exit KAV before I apply SP1. @MoxieMomma: Yes, SP1 could give me a chance to upgrade KAV also, however, I like to make one change at a time. That way, if things go wrong, I know the probably cause. I may just upgrade to release 11, I have the latest version downloaded, and then apply SP1 if my system remains stable. I can postpone SP1 for a week or so; I have all the latest Security Fixes on my system and the system is stable. Applying SP1 is a pro forma exercise and to give me a base for future fixes. Thank you all for your help. I will continue to monitor this post for updates until I apply SP1.
  18. Microsoft released Service Pack 1 (SP1) for Windows 7 this past week. Has anyone installed it yet? Is anyone running KAV 9.0.0.736 under Windows 7 x64 with SP1? Is so, did you encounter any dificulities with KAV 7.0.0.736 running with SP1 installed?
  19. It would not hurt to run CHKDSK, just to be sure you are not taking disk errors.
  20. The latest database updates 2/15/2011 6:54:00 AM seem to have fixed the problem. ffmpeg.exe is no longer detected as a virus - at least on my machine running KAV 9.0.0.736 under Windows 7 x64.
  21. Although Kaspersky Labs does not specifically state this is a false detection, since they write they cannot reproduce the detection, would it be safe to assume the module I sent them is not infected? This is important to me, since I have put the module ffmpeg.exe on the KAV exclusion list. Now that I have thoroughly read your reply, I see the module is clean. I can relax.
  22. I just received the following reply from Kaspersky Labs: I would love to "update the anitvirus database", but like others on this forum, I have been receiving the the message "No Update Available" all day today. I assume this means the module ffmpeg.exe is clean, but says nothing about correcting the problem of a false positive. Has anyone else reported the problem and recieved a reply? How do I reply to Kaspersky Labs? Reply to the e-mail, or open a new problem?
  23. It is reported now - and what a job that turned out to be. As I previously posted, I had restored the file from quartine. I started the report on the Kaspersky Lab site. It wanted the file in archive format (a wise percaution). I opened WinZip, navigated to the correct folder ... and KAV opened a Red Warning Box stating WinZip was trying to access an infected file. I had three choices - Delete, Quartine, or Block - no Permit Access. I chose "Block" as the lesser of three evils, and of course, Kaspersky blocked WinZip from reading the file (good Kaspersky, it's doing its job). Close everything, go to Kasperksy, add ffmpeg.exe to the exclusion list, open WinZip and zip ffmpeg.exe to the archive. Now passord it with the password "virus" per insturctions - oops WinZip wants a minimum of 8 characters in a password. Change the password requirement for WinZip, encrypt, and password the archive. (I wish there were an emoticon with its tongue hanging out, panting, because that is how I feel now <grin>) Now, let's hope this really is a false positive; since it is identified as a "generic" and ffmpeg.exe is part of a commercial package, I suspect it is. No complaints here, Kespersky is doing its job. I would much rather have a false positive or two rather than let a virus through to infest my machine.
  24. KAV 9.0.0.736 with database at 2/13/11 @ 1:28 AM just labeled ffmpeg.exe as infected. In my case, ffmpeg.exe is part of a commercial package Honestech VHS to DVD 5.0 Delux, which has been on my machine for several weeks. I suspect this is a false positive and restored the program. I would have thought Kaspersky would have caught the false positive and corrected the databases by now.
×
×
  • Create New...

Important Information

We use cookies to make your experience of our websites better. By using and further navigating this website you accept this. Detailed information about the use of cookies on this website is available by clicking on more information.