Author Topic: Real-time shields "off" even though all are running?  (Read 4980 times)

0 Members and 2 Guests are viewing this topic.

luke123

  • Guest
Real-time shields "off" even though all are running?
« on: May 01, 2011, 05:44:42 PM »
Hi, all

When I turned on my notebook today, I noticed in Avast's summary section that real-time shields were "off". This was odd as I always left the shields running. When I then checked each shield individually, all was shown to be "running", even though I didn't press the "Fix" button under summary. Very strange...

As my last computer session was done using Wi-Fi, I became concerned and immediately ran Avast (including a boot-time scan with high heuristics) and two other anti-virus/trojan programs, but there was no sign of any infection.

Incidentally, avast's real-time shield status became "secured" again after the scan was completed.

Could this have been a fluke/software bug, or was my computer hacked?

All feedback welcome!

Thx.

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89670
  • No support PMs thanks
Re: Real-time shields "off" even though all are running?
« Reply #1 on: May 01, 2011, 06:28:50 PM »
I rather doubt your computer was hacked, as you say the shields were running and nothing was found on the boot-time scan.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD - 27" external monitor 1440p 2560x1440 resolution - avast! free  24.9.6130 (build 24.9.9452.762) UI 1.0.818/ Firefox, uBlock Origin Lite, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline MayuraDeSilva

  • Sr. Member
  • ****
  • Posts: 260
Re: Real-time shields "off" even though all are running?
« Reply #2 on: May 01, 2011, 10:47:17 PM »
Do you use several anti-virus softwares? What else do you use as on-demand?

Conflicts may occur if you have two or more AV softwares...

Cheers...

luke123

  • Guest
Re: Real-time shields "off" even though all are running?
« Reply #3 on: May 02, 2011, 01:16:16 AM »
As my last computer session was done using Wi-Fi

I'd add that it was an unencrypted public Wi-Fi network which, in hindsight, could've been spoofed. (Yes, very careless of me...) Windows XP's built-in firewall was also found to be off after the Wi-Fi session.

Quote
ran Avast (including a boot-time scan with high heuristics) and two other anti-virus/trojan programs, but there was no sign of any infection.

I used Malwarebytes Anti-Malware and a2 Emergency Kit to scan the computer manually and sequentially. I only have one anti-virus program (Avast) on at any given time.
« Last Edit: May 02, 2011, 01:20:26 AM by luke123 »

Offline MayuraDeSilva

  • Sr. Member
  • ****
  • Posts: 260
Re: Real-time shields "off" even though all are running?
« Reply #4 on: May 02, 2011, 01:43:38 AM »
Did it happen again? Why don't you try clean installation? :)

Cheers...

SafeSurf

  • Guest
Re: Real-time shields "off" even though all are running?
« Reply #5 on: May 02, 2011, 08:57:21 AM »
Incidentally, avast's real-time shield status became "secured" again after the scan was completed.

I rather doubt your computer was hacked, as you say the shields were running and nothing was found on the boot-time scan.

I'd add that it was an unencrypted public Wi-Fi network which, in hindsight, could've been spoofed. (Yes, very careless of me...) Windows XP's built-in firewall was also found to be off after the Wi-Fi session.

Did it happen again? Why don't you try clean installation? :)
I think the OP realized that using an unencrypted public WiFi was an unintentional mistake and most likely will not repeat this.  A clean installation would not be the first choice solution at this time to trouble shoot since the boot-scan came out clean.

Offline RejZoR

  • Polymorphic Sheep
  • Serious Graphoman
  • *****
  • Posts: 9412
  • We are supersheep, resistance is futile!
    • RejZoR's Flock of Sheep
Re: Real-time shields "off" even though all are running?
« Reply #6 on: May 02, 2011, 09:22:52 AM »
It happened to me few times before. It's usually on startup only and it gets fixed if you stop the shields and start them right away. This will reset the status and everything will be fine. I have no clue why this sometimes happens.
Visit my webpage Angry Sheep Blog

SafeSurf

  • Guest
Re: Real-time shields "off" even though all are running?
« Reply #7 on: May 02, 2011, 09:25:06 AM »
@ RejZoR,

Did you try a Repair or do you have some bugs crawling in your machine.  :o

Offline RejZoR

  • Polymorphic Sheep
  • Serious Graphoman
  • *****
  • Posts: 9412
  • We are supersheep, resistance is futile!
    • RejZoR's Flock of Sheep
Re: Real-time shields "off" even though all are running?
« Reply #8 on: May 02, 2011, 08:20:01 PM »
There were no bugs on my system, just in avast! apparently. I never really traced the problem as it was gone by itself after some time. Not sure why or how.
Visit my webpage Angry Sheep Blog

luke123

  • Guest
Re: Real-time shields "off" even though all are running?
« Reply #9 on: May 06, 2011, 09:31:52 AM »
Thanks for all your feedback.

Trying to use this event as a learning opportunity, I wonder if I may put the follow queries to those in the know. Suppose a notebook/Avast user stumbles into and unwittingly becomes connected to someone's "trap" Wi-Fi network, how difficult would it be for the intruder to turn off the user's (a) Avast real-time shields and (b) built-in Windows firewall, and how long would it take to accomplish these two tasks?

Thinking positively, is there any defense against such intrusion in this hypothetical circumstance? For instance, would the Zonealarm firewall be an effective guard, esp. against an attempt to turn it off?

Thanks again!

SafeSurf

  • Guest
Re: Real-time shields "off" even though all are running?
« Reply #10 on: May 06, 2011, 11:03:30 AM »
There have been issues with ZA FW in the past, but these issues have been resolved with Avast's recent version, however if ZA changes their version or update, this may obviously affect things.  I can say many users with previous problems with ZA FW here on the forum opted to change FW's because of ZA. 

Depending on your third-party FW, you may/may not be able to also run Windows FW with it at the same time.  Some third-party FW's are disabled by it.  AIS (Avast Internet Security) allows both to run at the same time, which is unusual, but I'm not sure if ZA also allows this.

I think the situation when you mentioned going to the public WiFi and not being encrypted was your only honest mistake and this may have lead to a possible leak (assuming you keep it locked at home).  I would suggest changing passwords just in case.

How are things running now?