MSE not sure if real time protection is working

colinw

New member
Member
Local time
10:58 PM
Messages
48
As the title says really, is my MSE real time protection actually working ?

I ran an exe file on purpose a few days ago knowing it had some mallware / spyware built into it. I did it to test MSE. But nothing happened.

Now a few days later i decide to run a custom scan on my xp partition, my windows 7 partition and a pen drive. These drives had 4 trojans and two java exploits in total, which MSE cleaned.

But how come the real time protection did'nt pick these up ?

Or even doing a quick scan did'nt pick these up either ?

Help, i don't feel safe anymore :(
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
First of all, colinw, why in heavens name would you intentionally run an .exe file you know is bad? Personally, I don't consider that a wise move.

As to why the real-time protection didn't catch the install, much depends on your other settings and the permission you provided during the installation. If you have UAC turned off or allowed the UAC elevation prompt during install, you took it upon your own hands to provide the program with permission. It is also possible that what you installed was not in detection at the time of installation but was subsequently added.
 

My Computer My Computer

At a glance

Windows 7 & Windows Vista Ultimate
OS
Windows 7 & Windows Vista Ultimate
Well as i said i wanted to test MSE that's all. I keep hearing how good it is so thought i would test it. My UAC is one notch down from the dafault. But not off.

Anyway i won't be doing it again. :o

Been running it for several months now and not seen it detect anything, so you begin to wonder if it's working.
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
Click on the 'settings' tab, then click on 'real time protection'. Are all three boxes checked?
What are you're 'default actions' set at?
 

My Computer My Computer

At a glance

Windows 7 Ultimate 32bit SP1Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz4 GBATI Radeon HD 2600 Pro
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
hi !

colinw: "Been running it for several months now and not seen it detect anything, so you begin to wonder if it's working."

well, if you don´t get any viruses / malware, what is there for MSE to detect ? ;)
 

My Computer My Computer

At a glance

W7-Enterprise + WS-2008 (Converted to Worksta...P4 2,4GHz (at 1,8GHz, "slow" RDRAM, only 400M...2GBNVIDIA QUADRO2 PRO 64MB
Computer Manufacturer/Model Number
Dell
OS
W7-Enterprise + WS-2008 (Converted to Workstation)
CPU
P4 2,4GHz (at 1,8GHz, "slow" RDRAM, only 400MHz FSB...)
Motherboard
Intel 850E
Memory
2GB
Graphics Card(s)
NVIDIA QUADRO2 PRO 64MB
Sound Card
Yes
Monitor(s) Displays
Dell 1702FP
Screen Resolution
1280x1024
Hard Drives
Yes
PSU
Yes
Case
Yes
Cooling
Yes
Keyboard
Yes
Mouse
Yes, and i also have Cats...
Internet Speed
University: 100 MBit/s, Home: UMTS 7,2 MBit/s
Other Info
W7 on a DINOSAUR: P2 with 266MHz CPU & 160MB RAM
If there's a problem with it, the tray icon will warn you about it. If it doesn't, Windows Security will.
 

My Computer My Computer

At a glance

Windows 7 Professional 32-bit (6.1, Build 7600)Intel(R) Pentium(R) 4 3.00 GHz HT2.0 GBATI Mobility Radeon 9600 64MB
Computer Manufacturer/Model Number
Averatec 6130HS-20
OS
Windows 7 Professional 32-bit (6.1, Build 7600)
CPU
Intel(R) Pentium(R) 4 3.00 GHz HT
Memory
2.0 GB
Graphics Card(s)
ATI Mobility Radeon 9600 64MB
Sound Card
Realtek AC'97 Audio
Screen Resolution
1280 x 800
Hard Drives
Seagate 96023A 60GB 7200RPM -
Seagate FreeAgentDesktop 250GB
Cooling
20 Inch Box Fan
Mouse
Targus PAWM10 Wireless Optical Laptop Mouse
ok thanks guys for the reply's

Its all set to default, so yes all three ticks are on etc.

I will keep an eye on it.
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
Click on the 'settings' tab, then click on 'real time protection'. Are all three boxes checked?

Jacee:

Are you implying that real time virus protection is contingent on scans, scheduled or otherwise?
 

My Computer My Computer

At a glance

Windows 7 Home Premium SP1, 64-bitIntel Skylake i5-6600K, not overclocked8 GB HyperX DDR4-2666 (2 x 4 GB)none; graphics are integrated on CPU
Computer type
PC/Desktop
Computer Manufacturer/Model Number
Ignatz Special; 4 speed manual gearbox; factory air conditioning; one of one
OS
Windows 7 Home Premium SP1, 64-bit
CPU
Intel Skylake i5-6600K, not overclocked
Motherboard
AsRock Z170M Extreme 4, micro ATX
Memory
8 GB HyperX DDR4-2666 (2 x 4 GB)
Graphics Card(s)
none; graphics are integrated on CPU
Sound Card
onboard: Realtek ALC1150; external: USB Behringer UF0-202
Monitor(s) Displays
Dell S2340M 23 inch IPS
Screen Resolution
1600 x 900
Hard Drives
System: Crucial MX100 series SSD, 128 GB;
Data: Samsung Spinpoint 103SJ, 1 TB;
Backup: WD Caviar Green WD30EZRX-00D8PB0, 3 TB
PSU
Rosewill SilentNight 500 watt fanless, semi-modular
Case
Antec Solo II
Cooling
Noctua NH-U12S; Noctua F12 intake, Noctua S12A exhaust
Keyboard
Microsoft 200 6JH-00001 USB
Mouse
Dell or Microsoft optical wired; USB
Antivirus
Microsoft Security Essentials and Malwarebytes Premium
Browser
Pale Moon
Other Info
All fans PWM; speeds at idle: CPU circa 500 rpm; intake circa 600 rpm; exhaust circa 600 rpm; CPU temps 27 idle and 47 C load in a warm room (27 C/81 F) when running Intel Extreme Tuning Utility stress test.
Well just a quick update, i don't know whats going here but my usb pen drive had a hidden autorun.inf and svchost.exe file, I done a scan of the pen drive and MSE found nothing wrong.

Then took MSE off and went back to Nod32 which i was running before anyway. And as soon as plugged my pen drive in Nod32 detected these files and deleted them straight away.

So for what ever reason i can't see the MSE realtime working at all ?

I was hoping to stay with MSE but something is wrong.

My settings are all fine, they are just default.

To me it's as though there is no background scanning going on at all.

Weird.
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
I personally think MSE sucks cause its a free antivirus and as a free it has a low detection rate.
I sugest you Avira as a free antivirus and kaspersky or avast as a paid one you choose.
And never use 2 antiviruses in the same time.
 

My Computer My Computer

At a glance

Windows 7 X86Intel Pentium Dual CPU E21402 GBNvidia Ge force 8400 GS 512MB
OS
Windows 7 X86
CPU
Intel Pentium Dual CPU E2140
Motherboard
Foxconn
Memory
2 GB
Graphics Card(s)
Nvidia Ge force 8400 GS 512MB
I personally think MSE sucks cause its a free antivirus and as a free it has a low detection rate.
I sugest you Avira as a free antivirus and kaspersky or avast as a paid one you choose.
And never use 2 antiviruses in the same time.

I bet there would be a lot of Users who would disagree with that statment including me ;)
 

My Computer My Computer

At a glance

Windows 7 Ultimate - 64-bit | Windows 8 Pro -...Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6M...8 GBNVIDIA® GeForce® GT 650M 2GB Graphics, Optimu...
Computer Manufacturer/Model Number
Samsung NP550P5C-S02IN
OS
Windows 7 Ultimate - 64-bit | Windows 8 Pro - 64-bit
CPU
Intel® Core™ i7 Processor 3,610QM (2.30Hz, 6MB L3 Cach
Memory
8 GB
Graphics Card(s)
NVIDIA® GeForce® GT 650M 2GB Graphics, Optimus™ techno
Sound Card
SoundAlive™ JBL 3 Speakers (With sub-Woofer)
Monitor(s) Displays
39.62cm (15.6) SuperBright 300nit HD+ LED Display
Screen Resolution
1,600 x 900, Anti-Reflective
Hard Drives
1TB S-ATA II Hard Drive (5,400RPM)
I personally think MSE sucks cause its a free antivirus and as a free it has a low detection rate.
I sugest you Avira as a free antivirus and kaspersky or avast as a paid one you choose.
And never use 2 antiviruses in the same time.

I bet there would be a lot of Users who would disagree with that statment including me ;)
And me. Its been a great experience so far.

The "It's free so it can't be good" argument is absolutely not valid, at least in MSE's case.

@colinw:

Why don't you try the EICAR test?

If every time you create a file containing the test string (create a text file, paste the string and try to save it as "EICAR.COM" (quotes must be included, as otherwise notepad will save it as EICAR.COM.txt), you will get an Access Denied message from MSE, if RT protection is running fine.

If this does not work, maybe try uninstalling and re-installing MSE?

Download the EICAR test file from here. Multiple versions are available. If you choose to download the COM (either as such or in the zipped file) version, MSE should not let you do so at all.

If you choose the text file version, scroll down the document till you get to the test string, select it and copy it to a new empty text document, and try to save it as mentioned above.

Let us know how this goes.
 

My Computers My Computers

  • At a glance

    Windows 10 Professional 64-BitIntel Core i7 8700KG.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16...Zotac GeForce GTX-1660 Ti AMP 6GB
    Computer type
    Laptop
    Computer Manufacturer/Model Number
    Custom
    OS
    Windows 10 Professional 64-Bit
    CPU
    Intel Core i7 8700K
    Motherboard
    Asus Maximus X Code
    Memory
    G.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16GTZR
    Graphics Card(s)
    Zotac GeForce GTX-1660 Ti AMP 6GB
    Sound Card
    ROG SupremeFX S1220 (Onboard)
    Monitor(s) Displays
    Dell UP2716D
    Screen Resolution
    2560x1440
    Hard Drives
    Samsung 980 Pro PCIe NVMe 500GB
    Samsung 970 Evo PCIe NVMe 250GB
    Samsung 860 Evo SATA III 2TB
    WD Black WD2003FZEX 2TB x 3
    ODD - GH24NSC0
    PSU
    Coolermaster V1000
    Case
    Corsair Obsidian 450D
    Cooling
    Corsair H115i - Corsair SP140 Red x 2
    Keyboard
    Logitech G213
    Mouse
    Logitech G102
    Internet Speed
    100 Mbps (Supposedly) - Asianet India FTTH
    Antivirus
    Avast Free!
    Browser
    Maxthon Cloud Browser 5.xx
    Other Info
    Asus FX-553VD (960 Evo, 860 Evo, 16GB)
    Samsung Galaxy C9 Pro
    Canon EOS 70D
  • At a glance

    Windows 10 Pro x64Intel Core i7 7700HQ2 x 8GB Samsung DDR4 2400GTX 1050
    Computer type
    Laptop
    System Manufacturer/Model Number
    Asus FX503VD
    OS
    Windows 10 Pro x64
    CPU
    Intel Core i7 7700HQ
    Memory
    2 x 8GB Samsung DDR4 2400
    Graphics Card(s)
    GTX 1050
    Screen Resolution
    1920 x 1080
    Hard Drives
    Samsung 960 Evo PCIe NVMe 250GB Boot
    Samsung 840 Pro Series 256 GB SSD (MZ-7PD256BW);
I personally think MSE sucks cause its a free antivirus and as a free it has a low detection rate.
I sugest you Avira as a free antivirus and kaspersky or avast as a paid one you choose.
And never use 2 antiviruses in the same time.

I bet there would be a lot of Users who would disagree with that statment including me ;)
And me. Its been a great experience so far.

The "It's free so it can't be good" argument is absolutely not valid, at least in MSE's case.

@colinw:

Why don't you try the EICAR test?

If every time you create a file containing the test string (create a text file, paste the string and try to save it as "EICAR.COM" (quotes must be included, as otherwise notepad will save it as EICAR.COM.txt), you will get an Access Denied message from MSE, if RT protection is running fine.

If this does not work, maybe try uninstalling and re-installing MSE?

Download the EICAR test file from here. Multiple versions are available. If you choose to download the COM (either as such or in the zipped file) version, MSE should not let you do so at all.

If you choose the text file version, scroll down the document till you get to the test string, select it and copy it to a new empty text document, and try to save it as mentioned above.

Let us know how this goes.

Hi pillainp

Thanks for that, yes i tried that test and it worked fine.

So why does MSE not see a hidden autorun.inf and svchost.exe file on a pen drive, even after i scan it ?

And why did it not detect and clean my trojans and java exploits which i had on two partitions. ?

Thanks for that anyway, at least it proves it is working.
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
You're welcome.

Do you have any special permissions in effect on any of those drives?
 

My Computers My Computers

  • At a glance

    Windows 10 Professional 64-BitIntel Core i7 8700KG.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16...Zotac GeForce GTX-1660 Ti AMP 6GB
    Computer type
    Laptop
    Computer Manufacturer/Model Number
    Custom
    OS
    Windows 10 Professional 64-Bit
    CPU
    Intel Core i7 8700K
    Motherboard
    Asus Maximus X Code
    Memory
    G.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16GTZR
    Graphics Card(s)
    Zotac GeForce GTX-1660 Ti AMP 6GB
    Sound Card
    ROG SupremeFX S1220 (Onboard)
    Monitor(s) Displays
    Dell UP2716D
    Screen Resolution
    2560x1440
    Hard Drives
    Samsung 980 Pro PCIe NVMe 500GB
    Samsung 970 Evo PCIe NVMe 250GB
    Samsung 860 Evo SATA III 2TB
    WD Black WD2003FZEX 2TB x 3
    ODD - GH24NSC0
    PSU
    Coolermaster V1000
    Case
    Corsair Obsidian 450D
    Cooling
    Corsair H115i - Corsair SP140 Red x 2
    Keyboard
    Logitech G213
    Mouse
    Logitech G102
    Internet Speed
    100 Mbps (Supposedly) - Asianet India FTTH
    Antivirus
    Avast Free!
    Browser
    Maxthon Cloud Browser 5.xx
    Other Info
    Asus FX-553VD (960 Evo, 860 Evo, 16GB)
    Samsung Galaxy C9 Pro
    Canon EOS 70D
  • At a glance

    Windows 10 Pro x64Intel Core i7 7700HQ2 x 8GB Samsung DDR4 2400GTX 1050
    Computer type
    Laptop
    System Manufacturer/Model Number
    Asus FX503VD
    OS
    Windows 10 Pro x64
    CPU
    Intel Core i7 7700HQ
    Memory
    2 x 8GB Samsung DDR4 2400
    Graphics Card(s)
    GTX 1050
    Screen Resolution
    1920 x 1080
    Hard Drives
    Samsung 960 Evo PCIe NVMe 250GB Boot
    Samsung 840 Pro Series 256 GB SSD (MZ-7PD256BW);
Hi Pillainp,

No not really. I have a dual boot laptop with xp on one partition for work, and win 7 64 bit on another partition for home, and then one more partition for everything else.

thanks
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
I have attached a screenshot showing the files that MSE did'nt pick up at all via the real time checking. Only picked them up by scanning my partitions.

Ignor the top two on the list, that was the test i done earlier where real time did actually work.

Thanks
 

Attachments

  • virus list.jpg
    virus list.jpg
    68.4 KB · Views: 115

My Computer My Computer

At a glance

windows 7
OS
windows 7
Was that pen drive NTFS formatted?

Maybe you should also try Microsoft Answers' MSE discussions.

[Mods please delete link if pointers to other forums are unacceptable]
 

My Computers My Computers

  • At a glance

    Windows 10 Professional 64-BitIntel Core i7 8700KG.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16...Zotac GeForce GTX-1660 Ti AMP 6GB
    Computer type
    Laptop
    Computer Manufacturer/Model Number
    Custom
    OS
    Windows 10 Professional 64-Bit
    CPU
    Intel Core i7 8700K
    Motherboard
    Asus Maximus X Code
    Memory
    G.Skill TridentZ RGB DDR4 4000 F4-4000C18D-16GTZR
    Graphics Card(s)
    Zotac GeForce GTX-1660 Ti AMP 6GB
    Sound Card
    ROG SupremeFX S1220 (Onboard)
    Monitor(s) Displays
    Dell UP2716D
    Screen Resolution
    2560x1440
    Hard Drives
    Samsung 980 Pro PCIe NVMe 500GB
    Samsung 970 Evo PCIe NVMe 250GB
    Samsung 860 Evo SATA III 2TB
    WD Black WD2003FZEX 2TB x 3
    ODD - GH24NSC0
    PSU
    Coolermaster V1000
    Case
    Corsair Obsidian 450D
    Cooling
    Corsair H115i - Corsair SP140 Red x 2
    Keyboard
    Logitech G213
    Mouse
    Logitech G102
    Internet Speed
    100 Mbps (Supposedly) - Asianet India FTTH
    Antivirus
    Avast Free!
    Browser
    Maxthon Cloud Browser 5.xx
    Other Info
    Asus FX-553VD (960 Evo, 860 Evo, 16GB)
    Samsung Galaxy C9 Pro
    Canon EOS 70D
  • At a glance

    Windows 10 Pro x64Intel Core i7 7700HQ2 x 8GB Samsung DDR4 2400GTX 1050
    Computer type
    Laptop
    System Manufacturer/Model Number
    Asus FX503VD
    OS
    Windows 10 Pro x64
    CPU
    Intel Core i7 7700HQ
    Memory
    2 x 8GB Samsung DDR4 2400
    Graphics Card(s)
    GTX 1050
    Screen Resolution
    1920 x 1080
    Hard Drives
    Samsung 960 Evo PCIe NVMe 250GB Boot
    Samsung 840 Pro Series 256 GB SSD (MZ-7PD256BW);
no fat32
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
ok thanks i will have a look on the link.

Thanks for your all your help anyway.
 

My Computer My Computer

At a glance

windows 7
OS
windows 7
Instead of putting yourself through all this angst, why not find an AV program that you trust??
 

My Computer My Computer

At a glance

64-bit Windows 8.1 ProCore(TM) i5 CPU 4330 Haswell @ 3.20GHz12.00 GBIntel(R) HD Graphics
Computer type
PC/Desktop
Computer Manufacturer/Model Number
LENOVO K450 @3.0GHZ
OS
64-bit Windows 8.1 Pro
CPU
Core(TM) i5 CPU 4330 Haswell @ 3.20GHz
Motherboard
LENOVO
Memory
12.00 GB
Graphics Card(s)
Intel(R) HD Graphics
Sound Card
Intel HD integtrated
Monitor(s) Displays
HP 25' ISP Monitor
Screen Resolution
1900/1020
Hard Drives
(1) ST1000DM003-1CH162 (2) Generic STORAGE DEVICE USB Device (3) Generic STORAGE DEVICE USB Device
Internet Speed
100mb down/10mb up
Back
Top