12.14 updated XCS version issue

You can use Defender (windows builtin) and just use Xcitium Containment profile and EDR. That removes the Antivirus use (not the security client).

We did this with multiple Servers in the past which were running out of RAM and we thought it was Xcitium. We worked with there team for months and one night I went ahead and reviewed it myself and solved the issue. Defender is never turned off as such as Microsoft wants it to be ready to respond if you remove your 3rd party AV. With that being said the Defender Malware module on Windows Server 2019 was kicking in and eating all the RAM. Issues turned out to be in the task menu that runs that module was set to high priority giving it access to 100% of the resources, just set it to low or off (don’t rember off the top of my head). We realized it when Xcitium AV was off of the server and Defender kept doing the same thing.

With this you can still try and add value to your customer using Defender.

Hehe not 15 clients, only 15 endpoints. i will loose my mind and contact Melih and Tim Bandos directly if i do haha but thnx :slight_smile:

1 Like

Haha @QuickSilverST J ITech make a discord server so ur community and fans can join ur server and have fun

Hi @Nik and @QuickSilverST , XCS 12.15 is going to be released this Thursday (22-Jun-2023)

1 Like

@ilgaz Thanks :smiley: but we need to test it

Hello,

Great I will test it in my lab as soon as it’s released.

this setting is helping somewhat if you are using 12.12 or 12.13. I don’t have 12.14 so cannot say but you can try.
Assign it via profile.

Hi Ilgaz,

Can we also get to control the following setting? This setting also slows down the PC a lot as it continuously scans the network SMB operations. As of now we can only disable it by going to each and every device but that is not possible for us. I created a ticket and I was told that in future release it will be taken care of.

Yes i think this will be good, but to also control the other options like the AMSI etc not just that one setting.

Hi @myr , @QuickSilverST , thank you very much for the suggestions. We will analyze these and map into our roadmap. I will keep you updated soon.

try or test comodo internet security: https://forums.comodo.com/t/comodo-internet-security-2020-v12-2-2-8012-released/320209

Is this the new version that was mentioned or just updated version of the old one?

I kindly request you to follow the suggestion provided by the team. Please do reach back to us in case if you face same issue and able to collect memory dump.

Thanks and regards.
.