Global Moderator
  • Content Count

  • Joined

  • Last visited

  • Days Won


Posts posted by stapp

  1. 17 minutes ago, JeremyNicoll said:

    @GT500  is the Emsiclean you're suggesting the OP use any different from the the one they will have used (as described in their first post)?

    Probably not. But as GT500 had no idea what wallacegal did with the Emsiclean she  first used, that is more than likely why he asked for a DiagLog first before giving detailed instructions on how he wanted Emsiclean it run..

  2. 39 minutes ago, Frank H said:

    didn't you tell Defender to ignore that file ? maybe you could check the defender exclusions list.

    Ah yes I did :)

    I forgot about that as I had downloaded and run a new version of EEK to test the usb thing.

  3. In EEK settings you can select to enable beta updates. Then you just update. If you want to go back to the stable version you just de-select the beta option and update)

    Everything is the same except you are using the latest beta version (remember it is a beta.)

    See also


  4. This is an English speaking forum. Please use Google translate.
    What operating system are you using?
    Is your PC up to date and all updates installed?
    Have you restarted your machine recently?

    Ceci est un forum anglophone. Veuillez utiliser Google translate.
    Quel système d'exploitation utilisez-vous?
    Votre PC est-il à jour et toutes les mises à jour sont-elles installées?
    Avez-vous redémarré votre machine récemment?

  5. 28 minutes ago, marko said:


    this issue isn't new stapp, it still happens with many of the other 'pages' where you click on a heading and a different heading gets underlined

    It never affected me much until now.

  6. 20 minutes ago, Frank H said:

    if you test this again with defender disabled eek will detect eicar.

    Realtime protection (like Windef, EAM etc) usually use mini filter drivers.

    EEK doesn't use a file system mini filter to do file I/O. It just opens a file. 
    And ANY file system mini filter gets to check out the file first.This is why Defender and other realtime protection always detect files first.


    Thanks for the explanation Frank.

  7. 8 minutes ago, Frank H said:

    2020.4 improvement is: if you try to uninstall EAM and you have set the administrator password, you will get  a dialog presented,  asking for the admin password.

    This prevents unauthorized uninstall by (local admin) users.



    By the way, there is definitely something not right with the GUI as shown in my screenshot above. It's still doing it sometimes despite trying other areas of the settings.

  8. Win 10 1909  with all updates.

    Updated beta enabled 10048 to 10065 without issue.

    Did a malware scan and again Defender caught eicar first (debug logs and screenie attached) There is no trace of eicar on machine now even though I selected for Defender to allow it.2043100445_Annotation2020-03-27061011.jpg.d29f879040e76c08d7426508d3639ab4.jpg
    Download Image

    Can confirm that right-click delete now works on EEK folder using Win10 :thumbs:

    Downloaded and installed EEK again. I noticed in Forensics that it says ''detect pups has been changed to enabled'' It didn't ask me about that!!


  9. Win 10 1909 all updates.

    Autoupdated without issue.

    Noticed that whenever I choose Settings.... Permissions, it shows Updates as underlined in the GUI.

    It may correct itself perhaps after a reboot. Just looking around at the moment.

    What do you mean by 'Setting the Administrator password''? Do you mean that setting wasn't working as expected in some cases?


    Annotation 2020-03-27 044925.jpg
    Download Image