<?xml version="1.0"?>
<rss version="2.0"><channel><title>Bugs Latest Topics</title><link>https://forum.pulseway.com/forum/18-bugs/</link><description>Bugs Latest Topics</description><language>en</language><item><title>Can't download files from devices</title><link>https://forum.pulseway.com/topic/5489-cant-download-files-from-devices/</link><description><![CDATA[<p>For several days now, I can't download files from any device. See attached error.</p>
<p><a href="https://forum.pulseway.com/uploads/monthly_2026_04/Screenshot2026-04-08134047.png.df0aa0896875d75f1d0b9c8e3b74e12d.png" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="1695" src="https://forum.pulseway.com/uploads/monthly_2026_04/Screenshot2026-04-08134047.png.df0aa0896875d75f1d0b9c8e3b74e12d.png" height="89" width="634" class="ipsImage ipsImage_thumbnailed" alt="Screenshot 2026-04-08 134047.png" loading='lazy'></a></p>]]></description><guid isPermaLink="false">5489</guid><pubDate>Wed, 08 Apr 2026 17:51:29 +0000</pubDate></item><item><title>Pulseway 9.25 Constant "Up and running" notifications</title><link>https://forum.pulseway.com/topic/5482-pulseway-925-constant-up-and-running-notifications/</link><description><![CDATA[<p>I recently noticed on several Windows 11 endpoints that have automatically updated to version 9.25, I am getting constant "up and running" notifications through my Android app (which is on 9.24, the latest version). When I log on to the endpoints, I am unable to open Pulseway Manager right away since it seems to crash on its own. Once I go to Task Manager to kill the process tree, I'm able to open the app. I can't say if this happened with Windows 9.24 version of the app.</p><p>For now, I have turned off the "Send a notification when the computer is started with priority: ", which seems to have mitigated the problem. </p>]]></description><guid isPermaLink="false">5482</guid><pubDate>Thu, 12 Mar 2026 22:46:48 +0000</pubDate></item><item><title>Buggy MFA on mobile app</title><link>https://forum.pulseway.com/topic/5367-buggy-mfa-on-mobile-app/</link><description><![CDATA[<p>Hi,</p><p>dunno if this is a bug or just me, but recently, probably with MFA implementation, I have constant problems opening the app on mobile (Android 15, Samsung Galaxy S21). It always asks for username, password, which is annyoing anyways, then stupidly wants me to confirm login from trusted mobile app... but THIS is trusted mobile app!!?? Sometimes I get thru by killing the app, restarting, entering credentials (again!), then somehow I can enter MFA from my Authenticator.</p><p>This become so annoying, that I am considering abandoning Pulseway, despite I am one of life long customers.</p><p>Any ideas? What am I missing?</p>]]></description><guid isPermaLink="false">5367</guid><pubDate>Tue, 23 Sep 2025 21:06:25 +0000</pubDate></item><item><title>"Corrupt" Pulseway Agents after agent updates by Pulseway Staff - Aware but no ETA of a fix.</title><link>https://forum.pulseway.com/topic/5470-corrupt-pulseway-agents-after-agent-updates-by-pulseway-staff-aware-but-no-eta-of-a-fix/</link><description><![CDATA[<p>I have already reported this to Pulseway Support and am meeting with them ovcer Zoom today to try and resolve. I am trying to gain more information and see if the community is also having issues. We have been deploying the Pulseway windows_agent_x64.msi over GPO as I image them and move them to an OU "Open and Ready" designated for deployment of the application.<br><br>In late October we imaged and deployed many Windows 11 laptops without issues. None of those deployed laptops seem to having this issue... working great. This month I have swapped out some older Windows 11 laptops and reimaged them, and installed the Pulseway agent over GPO as usual... Install goes fine but then the agent wont update and Remote Control is missing... the Update log does not get updated and the machine enver receives updates... it's broken. Very Broken.<br><br>I have tried other methods and get an error:<br>Pulseway: "This advertised application will not be installed because it might be unsafe. Contact your administrator to change the installation interface option of the package to basic."<br><br>I have tried:<br>Recreating the GPO Policy.<br>Updated Software Restirctions Policy to include the msi path.<br>Updated the Trusted Root Certificates. (roots.sst)<br>Manually installed from local drive<br>Disabled UAC on the Laptop (for testing)<br>Tried repair installation after install<br>Removed the latest Windows 11 Updates (The ones I can remove)<br>NO Antivirus installed / Firewall disabled (for testing)<br>Verified the .msi cert is valid...<br><br>SignerCertificate                         Status                                 Path<br>-----------------                         ------                                 ----<br>C32461866177F1AA99D7592E269EBDDC083AA0FD  Valid        windows_agent_x64.msi<br><br>&gt;&gt;&gt; NONE of this fixes it.<br><br>This has been working flawlessly for over a year... Not sure what broke it.<br>No Major changes here... Network has been flawless... Windows 11 amazing.<br><br>This a Pulseway problem? <br>I don't like the blame games... I am about function and working to fix / progress.<br>I see another posts with .Net issues and Agent failure and wonder if this is related.<br></p><p>Any help or Suggestions are Appreciated!! Crazy!<br>&gt; I may install Windows 10 on a system and see if the PW Agent is still broken or if I can getr more infomration. (Windows 10 no longer supported of coarse)</p><p><img class="ipsImage ipsImage_thumbnailed ipsRichText__align--block ipsRichText__align--width-custom" data-fileid="1674" src="https://forum.pulseway.com/uploads/monthly_2026_01/pw-error.thumb.jpg.a2d204da082d86f7ac7083604d9d9a7e.jpg" alt="pw-error.jpg" title="pw-error.jpg" width="1000" height="462" data-full-image="https://forum.pulseway.com/uploads/monthly_2026_01/pw-error.jpg.d60d4bb93abe30755a239b0826232734.jpg" style="--i-media-width: 610px;" loading="lazy"></p>]]></description><guid isPermaLink="false">5470</guid><pubDate>Thu, 29 Jan 2026 14:11:20 +0000</pubDate></item><item><title>Just plain can't Remote Into Mac Device</title><link>https://forum.pulseway.com/topic/5462-just-plain-cant-remote-into-mac-device/</link><description><![CDATA[<p>Launching Pulseway macOS Remote Control, nothing happens, so I download the macOS Pulseway Remote Control Client on the mac device (the wording in the suggestion is phrased confusingly, but it's a .pkg file so <em>probably </em>not intended for my windows computer). Then I rerun the macOS Remote Control and it still does nothing. </p><p>And both PulsewayAgent and Pulseway Remote Control have permission enabled on the mac for Accessibility, Input Monitoring, and Full Disk Access; PulsewayPreLoginHelper has permissions for Accessibility; and PulsewayAgent has permissions for App Background Activity. </p><p>Am I missing something? I don't believe so, and I see others have had issues with Pulseway <a rel="" href="https://forum.pulseway.com/topic/5232-mac-administrators-be-aware-of-pulseway-their-remote-in-app-does-not-work-on-macs/">here</a>. </p>]]></description><guid isPermaLink="false">5462</guid><pubDate>Thu, 08 Jan 2026 15:33:50 +0000</pubDate></item><item><title><![CDATA[Get "the remote control session was closed" errors from Pulseway Remote Control on Mac client -> Windows server]]></title><link>https://forum.pulseway.com/topic/5439-get-the-remote-control-session-was-closed-errors-from-pulseway-remote-control-on-mac-client-windows-server/</link><description><![CDATA[<p>I just started using Pulseway and I am using the Pulseway Remote Control application on my Mac to connect to Windows server. I am seeing a lot of "the remote control session was closed" errors from the client. Oddly this only seems to happen with certain servers. I am running version 9.21 (build 2025093001) on Sonoma 14.6.1. Is this a known issue with the Mac client? My colleagues on Windows clients are not reporting any issues. My network is stable and no other applications are having any issues. </p>
<p><a href="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-14at8_49_32AM.png.2f7b99756fa16ad5a62d646c78b5d25b.png" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="1659" src="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-14at8_49_32AM.png.2f7b99756fa16ad5a62d646c78b5d25b.png" height="452" width="562" class="ipsImage ipsImage_thumbnailed" alt="Screenshot 2025-11-14 at 8.49.32 AM.png" loading='lazy'></a></p>
<p><a href="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-13at4_44_26PM.png.2cfebc649225f8b253682e5720c75a7f.png" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="1660" src="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-13at4_44_26PM.png.2cfebc649225f8b253682e5720c75a7f.png" height="458" width="562" class="ipsImage ipsImage_thumbnailed" alt="Screenshot 2025-11-13 at 4.44.26 PM.png" loading='lazy'></a></p>]]></description><guid isPermaLink="false">5439</guid><pubDate>Fri, 14 Nov 2025 16:42:51 +0000</pubDate></item><item><title>Patch Management - Treesize Free creating log file C:\Program (missing quotes)</title><link>https://forum.pulseway.com/topic/5385-patch-management-treesize-free-creating-log-file-cprogram-missing-quotes/</link><description><![CDATA[<p>Users with "TreeSize Free" app installed or updated via Patch Management received a Filename Warning message this morning when starting Windows 11 Pro workstation (25H2):</p><p><code>"There is a file or folder on your computer called "C:\Program" which could cause certain applications to not function correctly. Renaming it to "C:\Program1" would solve this problem. Would you like to rename it now?"</code></p><p>We found that a file called "Program" located in C:\ had been created during patching yesterday which is actually a logfile from Pulseway patching when it updated TreeSize Free on the workstations. Opening the logfile shows:</p><p><code>2025-11-05 13:02:53.520 Log opened. (Time zone: UTC+00:00)</code></p><p><code>2025-11-05 13:02:53.520 Setup version: Inno Setup version 6.4.3</code></p><p><code>2025-11-05 13:02:53.520 Original Setup EXE: C:\WINDOWS\SystemTemp\smclient_workDir_20251105125748944\TreeSize.exe</code></p><p><code>2025-11-05 13:02:53.520 Setup command line: /SL5="$11000CE,15088302,893440,C:\WINDOWS\SystemTemp\smclient_workDir_20251105125748944\TreeSize.exe" /verysilent /norestart /lang=en /log=C:\Program Files\Pulseway\Patch\logs\4W2V7E_20251105125748932\treesizefree_install.log /allusers</code></p><p>Note that the log file is not contained within quotes so instead of creating the logfile at <strong><em>C:\Program Files\Pulseway\Patch\logs\4W2V7E_20251105125748932\treesizefree_install.log </em></strong>it instead created the file <strong>C:\Program</strong></p><p>Please check all patching logfiles are contained in quotes otherwise users will get this Windows message. Thank you.</p><p></p><p><img class="ipsImage ipsImage_thumbnailed ipsRichText__align--block" data-fileid="1639" src="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-06091417.png.19f95477c356f19722c13bf70284ddcd.png" alt="Screenshot 2025-11-06 091417.png" title="Screenshot 2025-11-06 091417.png" width="405" height="160" data-full-image="https://forum.pulseway.com/uploads/monthly_2025_11/Screenshot2025-11-06091417.png.19f95477c356f19722c13bf70284ddcd.png" loading="lazy"></p><p><a class="ipsAttachLink" data-fileid="1637" data-fileext="txt" data-extension="txt" href="https://forum.pulseway.com/applications/core/interface/file/attachment.php?id=1637&amp;key=97ec31852dd7b7468a8697d53eedbefe" rel="">Program.txt</a> <a class="ipsAttachLink" data-fileid="1638" data-fileext="rogram" data-extension="rogram" href="https://forum.pulseway.com/applications/core/interface/file/attachment.php?id=1638&amp;key=a5882d143bcc6e62b6c1bd5770889cb4" rel="">Program</a></p>]]></description><guid isPermaLink="false">5385</guid><pubDate>Thu, 06 Nov 2025 09:47:46 +0000</pubDate></item><item><title>Microsoft Defender reporting pulsewayhardware.sys as malware</title><link>https://forum.pulseway.com/topic/5313-microsoft-defender-reporting-pulsewayhardwaresys-as-malware/</link><description><![CDATA[<p>Several times now, Microsoft Defender for Endpoint has identified the following file as malware and has quaratined it:<br>Filename: <br>pulsewayhardware.sys</p><p>Hashes: <br>Hash SHA1<br>d25340ae8e92a6d29f599fef426a2bc1b5217299</p><p>Hash SHA256<br>11bd2c9f9e2397c9a16e0990e4ed2cf0679498fe0fd418a3dfdac60b5c160ee5</p><p>Threat: <br>Winring0</p><p><strong>Defender engine version</strong><br>1.1.25050.6</p><p><strong>Defender Mocamp version</strong><br>4.18.25040.2</p><p>VirusTotal link:<br><a rel="external nofollow" href="https://www.virustotal.com/gui/file/11bd2c9f9e2397c9a16e0990e4ed2cf0679498fe0fd418a3dfdac60b5c160ee5">https://www.virustotal.com/gui/file/11bd2c9f9e2397c9a16e0990e4ed2cf0679498fe0fd418a3dfdac60b5c160ee5</a></p><h4><strong>Detection</strong></h4><p><strong>VirusTotal detection ratio</strong></p><p><a rel="external nofollow" href="https://www.virustotal.com/#/file/d25340ae8e92a6d29f599fef426a2bc1b5217299/detection"><strong>2/72</strong></a></p><p><strong>Malware detected</strong></p><p><strong>VulnerableDriver:WinNT/Winring0</strong></p><h4><strong>Object details</strong></h4><h3><strong>File size</strong></h3><p>14.54 KB</p><h3><strong>Is PE</strong></h3><p>true</p><h3><strong>Issuer</strong></h3><p>GlobalSign ObjectSign CA</p><h3><strong>Signer</strong></h3><p><span style="font-family: inherit">Noriyuki MIYAZAKI</span></p><h4><strong>PE metadata</strong></h4><p><strong>Original name</strong></p><p>WinRing0.sys</p><p><strong>Company</strong></p><p><a rel="external nofollow" href="https://OpenLibSys.org">OpenLibSys.org</a></p><p><strong>Product</strong></p><p>WinRing0</p><p><strong>Description</strong></p><p>WinRing0</p><h4><strong>File prevalence</strong></h4><p>Organization devices<strong>5</strong></p><p>Organization cloud apps<strong>0</strong></p><p>Worldwide devices<strong>10k+</strong></p><p><strong>Worldwide observed devices</strong></p><p><strong>Time</strong></p><p>First seen</p><p>Mar 3, 2013 6:00:43 AM</p><p>Last seen</p><p>Jun 13, 2025 5:47:56 AM</p><p></p><p>Is this an actual Pulseway file and has anyone else experienced this on any of their agents? What other info can I provide?</p><p>And before anyone asks, I only deploy agents from the SaaS Pulseway server instance.</p><p></p><p>Thanks,</p><p>Bart B.<br></p>]]></description><guid isPermaLink="false">5313</guid><pubDate>Sat, 14 Jun 2025 22:49:53 +0000</pubDate></item><item><title>PulseWay Deploy detected an blocked by Microsoft Defender as 'Vigorf'</title><link>https://forum.pulseway.com/topic/5382-pulseway-deploy-detected-an-blocked-by-microsoft-defender-as-vigorf/</link><description><![CDATA[<p>This is the report from Microsoft defender:</p><hr><hr><p></p><p><strong><span style="font-family: inherit;">An active 'Vigorf' malware was blocked</span></strong></p><p>New</p><p>Detected</p><p><span style="font-family: inherit;">Low</span></p><p>10/27/2025</p><p>3:33:33 PM</p><p></p><p><span style="font-family: inherit;">[17044] PCMonitorSrv.exe created file</span></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p>3:33:33 PM</p><p></p><p><span style="font-family: inherit;">[4] ntoskrnl.exe loaded image</span></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p><strong>SHA1</strong></p><p><span style="font-family: inherit;">d25340ae8e92a6d29f599fef426a2bc1b5217299</span></p><p><strong>Path</strong></p><p><span style="font-family: inherit;">C:\Program Files\Pulseway\PCMonitorSrv.sys</span></p><p><strong>Size</strong></p><p><span style="font-family: inherit;">14 KB</span></p><p><strong>Is PE</strong></p><p><span style="font-family: inherit;">True</span></p><p><strong>Last modified time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:33:33 PM</span></p><p><strong>Initiating process</strong></p><p></p><p><span style="font-family: inherit;">[4]</span></p><p><strong><span style="font-family: inherit;">ntoskrnl.exe</span></strong></p><p><strong>Process id</strong></p><p><span style="font-family: inherit;">4</span></p><p><strong>Execution details</strong></p><p><span style="font-family: inherit;">Token elevation: Default, Integrity level: System</span></p><p><strong>Image file path</strong></p><p><span style="font-family: inherit;">C:\Windows\System32\ntoskrnl.exe</span></p><p><strong>Image file SHA1</strong></p><p><span style="font-family: inherit;">d50cebb81fe449e0d62a4ae92b185b917e898eef</span></p><p><strong>Image file creation time</strong></p><p><span style="font-family: inherit;">May 12, 2025 7:48:05 AM</span></p><p><strong>Image file last modification time</strong></p><p><span style="font-family: inherit;">May 12, 2025 7:48:06 AM</span></p><p><strong>PE metadata</strong></p><p></p><p><strong><span style="font-family: inherit;">ntoskrnl.exe</span></strong></p><p><strong>User</strong></p><p></p><p><strong><span style="font-family: inherit;">NT AUTHORITY\SYSTEM</span></strong></p><p><strong>PE metadata</strong></p><p></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><strong>Original name</strong></p><p><span style="font-family: inherit;">WinRing0.sys</span></p><p><strong>Compilation timestamp</strong></p><p><span style="font-family: inherit;">Jul 26, 2008 4:29:37 PM</span></p><p><strong>Company</strong></p><p><a rel="external nofollow" href="https://OpenLibSys.org"><span style="font-family: inherit;">OpenLibSys.org</span></a></p><p><strong>Product</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Version</strong></p><p><span style="font-family: inherit;">1.2.0.5</span></p><p><strong>Description</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Remediation details</strong></p><p></p><p><strong><span style="font-family: inherit;">Defender detected 'Trojan:Win32/Vigorf.A' in file 'PCMonitorSrv.sys', during attempted open by 'ntoskrnl.exe'</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p><strong>Is runtime packed</strong></p><p><span style="font-family: inherit;">False</span></p><p><strong>Threat name</strong></p><p><span style="font-family: inherit;">Trojan:Win32/Vigorf.A</span></p><p><strong>Remediation action</strong></p><p><span style="font-family: inherit;">quarantine</span></p><p><strong>Remediation action result</strong></p><p><span style="font-family: inherit;">Fail</span></p><p><strong>Detection time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:34:05 PM</span></p><p>3:34:05 PM</p><p></p><p><span style="font-family: inherit;">ntoskrnl.exe interacted with file</span></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p><strong>SHA1</strong></p><p><span style="font-family: inherit;">d25340ae8e92a6d29f599fef426a2bc1b5217299</span></p><p><strong>Path</strong></p><p><span style="font-family: inherit;">C:\Program Files\Pulseway\PCMonitorSrv.sys</span></p><p><strong>Size</strong></p><p><span style="font-family: inherit;">14 KB</span></p><p><strong>Is PE</strong></p><p><span style="font-family: inherit;">True</span></p><p><strong>Creation time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:33:33 PM</span></p><p><strong>Last modified time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:33:33 PM</span></p><p><strong>Initiating process</strong></p><p></p><p><span style="font-family: inherit;">[4]</span></p><p><strong><span style="font-family: inherit;">ntoskrnl.exe</span></strong></p><p><strong>Process id</strong></p><p><span style="font-family: inherit;">4</span></p><p><strong>Execution details</strong></p><p><span style="font-family: inherit;">Token elevation: Default, Integrity level: System</span></p><p><strong>Image file path</strong></p><p><span style="font-family: inherit;">C:\Windows\System32\ntoskrnl.exe</span></p><p><strong>Image file SHA1</strong></p><p><span style="font-family: inherit;">d50cebb81fe449e0d62a4ae92b185b917e898eef</span></p><p><strong>Image file creation time</strong></p><p><span style="font-family: inherit;">May 12, 2025 7:48:05 AM</span></p><p><strong>Image file last modification time</strong></p><p><span style="font-family: inherit;">May 12, 2025 7:48:06 AM</span></p><p><strong>PE metadata</strong></p><p></p><p><strong><span style="font-family: inherit;">ntoskrnl.exe</span></strong></p><p><strong>User</strong></p><p></p><p><strong><span style="font-family: inherit;">NT AUTHORITY\SYSTEM</span></strong></p><p><strong>PE metadata</strong></p><p></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><strong>Original name</strong></p><p><span style="font-family: inherit;">WinRing0.sys</span></p><p><strong>Compilation timestamp</strong></p><p><span style="font-family: inherit;">Jul 26, 2008 4:29:37 PM</span></p><p><strong>Company</strong></p><p><a rel="external nofollow" href="https://OpenLibSys.org"><span style="font-family: inherit;">OpenLibSys.org</span></a></p><p><strong>Product</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Version</strong></p><p><span style="font-family: inherit;">1.2.0.5</span></p><p><strong>Description</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Remediation details</strong></p><p></p><p><strong><span style="font-family: inherit;">Defender detected 'Trojan:Win32/Vigorf.A' in file 'PCMonitorSrv.sys', during attempted open by 'ntoskrnl.exe'</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p>3:34:05 PM</p><p></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p><strong>SHA1</strong></p><p><span style="font-family: inherit;">d25340ae8e92a6d29f599fef426a2bc1b5217299</span></p><p><strong>Path</strong></p><p><span style="font-family: inherit;">C:\Program Files\Pulseway\PCMonitorSrv.sys</span></p><p><strong>Size</strong></p><p><span style="font-family: inherit;">14 KB</span></p><p><strong>Is PE</strong></p><p><span style="font-family: inherit;">True</span></p><p><strong>Creation time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:33:33 PM</span></p><p><strong>Last modified time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:33:33 PM</span></p><p><strong>Signer</strong></p><p><span style="font-family: inherit;">Noriyuki MIYAZAKI</span></p><p><strong>Issuer</strong></p><p><span style="font-family: inherit;">GlobalSign ObjectSign CA</span></p><p><strong>VirusTotal detection ratio</strong></p><p><a rel="external nofollow" href="https://www.virustotal.com/#/file/d25340ae8e92a6d29f599fef426a2bc1b5217299/detection">4/72</a></p><p><strong>Initiating process</strong></p><p></p><p><strong><span style="font-family: inherit;">Additional related files</span></strong></p><p><strong>PE metadata</strong></p><p></p><p><strong><span style="font-family: inherit;">PCMonitorSrv.sys</span></strong></p><p><strong>Original name</strong></p><p><span style="font-family: inherit;">WinRing0.sys</span></p><p><strong>Compilation timestamp</strong></p><p><span style="font-family: inherit;">Jul 26, 2008 4:29:37 PM</span></p><p><strong>Company</strong></p><p><a rel="external nofollow" href="https://OpenLibSys.org"><span style="font-family: inherit;">OpenLibSys.org</span></a></p><p><strong>Product</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Version</strong></p><p><span style="font-family: inherit;">1.2.0.5</span></p><p><strong>Description</strong></p><p><span style="font-family: inherit;">WinRing0</span></p><p><strong>Remediation details</strong></p><p></p><p><strong><span style="font-family: inherit;">Defender detected 'Trojan:Win32/Vigorf.A' in file 'PCMonitorSrv.sys', during attempted open by 'ntoskrnl.exe'</span></strong></p><p><span style="font-family: inherit;">Malware</span></p><p><strong>Is runtime packed</strong></p><p><span style="font-family: inherit;">False</span></p><p><strong>Threat name</strong></p><p><span style="font-family: inherit;">Trojan:Win32/Vigorf.A</span></p><p><strong>Remediation action</strong></p><p><span style="font-family: inherit;">quarantine</span></p><p><strong>Remediation action result</strong></p><p><span style="font-family: inherit;">Fail</span></p><p><strong>Detection time</strong></p><p><span style="font-family: inherit;">Oct 27, 2025 3:34:05 PM</span></p><p></p><hr><hr><p>We are having this issue on multiple workstations where the deployment was done.</p><p></p><p></p>]]></description><guid isPermaLink="false">5382</guid><pubDate>Tue, 28 Oct 2025 11:32:46 +0000</pubDate></item><item><title>MAC Administrators be aware of Pulseway ! Their remote in app does not work on Macs !</title><link>https://forum.pulseway.com/topic/5232-mac-administrators-be-aware-of-pulseway-their-remote-in-app-does-not-work-on-macs/</link><description><![CDATA[<p>
	Hello guys.
</p>

<p>
	I am a Mac user administrator and have been trying to use Pulseway platform and for the most of time web interface works ok.
</p>

<p>
	I have Mac computers (Desktop and laptops ) deployed in my company and Support and Development team is a joke at Pulseway.
</p>

<p>
	I had a really bed experience since we started using the platform since February.  I Opened 3 Tickets regarding this issue and since February was not fixed and resolved.
</p>

<p>
	Pulseway simpluy ignores and does not take you seriously 9 months passed and i can not use Remote Control or remote host from any of my Mac Computers !.
</p>

<p>
	So if you have a mac as administrator forget about "Pulseway Remote Control" app on mac !.
</p>

<p>
	You will have to use third part apps and pay extra like me. Teamviewer, Anydesk or another RMM provider which i tested before Pulseway and worked on mac just fine to remote in to monitored machines. But Unfortunately not on mac.
</p>

<p>
	It fails to work on Intel based Mac , Apple Sillicon M3, theonly one other machine i could get it to work is M1 Only !! but with the recent update it started crashing a lot.
</p>

<p>
	 
</p>

<p>
	I m very disapointed that Mac Development team does not do any serious work on getting "Pulseway Remote Control" work on all Apple computers.
</p>

<p>
	Others can.
</p>

<p>
	So if you need a remote control an Macs think twice and test it using their Trial signup before committing to Lockable Contracts !.
</p>

<p>
	I hope that someone will take that issue seriously and fix that ASAP.
</p>

<p>
	Frustrating
</p>

<p>
	 
</p>
]]></description><guid isPermaLink="false">5232</guid><pubDate>Thu, 24 Oct 2024 19:00:29 +0000</pubDate></item><item><title>Pulsway not closing remote sessions correctly</title><link>https://forum.pulseway.com/topic/5362-pulsway-not-closing-remote-sessions-correctly/</link><description><![CDATA[<p>I have noticed recently that after I have remoted in to a client (seemingly all my clients, different versions of windows), and then disconnect from the client, I cannot log in again.</p><p>When I try to log in again, I get stuck on the view "Connected. Waiting for screen update". </p><p>I have noticed that if I kill the process "Pulsway User Agent" on the client machine, I can again log in to the computer. </p><p>On the client, the window in the lower right corner that says that some one is logged in does not disappear when I close my connection. </p><p>We have over 140 clients on our account, so far this issue has been on all of the ones I have tested it on. </p>]]></description><guid isPermaLink="false">5362</guid><pubDate>Thu, 28 Aug 2025 08:33:07 +0000</pubDate></item><item><title>Unreliable offline time</title><link>https://forum.pulseway.com/topic/5346-unreliable-offline-time/</link><description><![CDATA[<p>Pulseway is showing random offline time for devices. I have several devices being shown days offline when they have been online just hours ago. One of them is showing offline since 224 days ago but patch management history shows that it has been updated 12 days ago. Another shows 64 days offline and patched successfully 6 days ago.</p>]]></description><guid isPermaLink="false">5346</guid><pubDate>Wed, 23 Jul 2025 06:18:22 +0000</pubDate></item><item><title>Pulseway agents not working anymore after Windows NET.Framework Patch</title><link>https://forum.pulseway.com/topic/5239-pulseway-agents-not-working-anymore-after-windows-netframework-patch/</link><description><![CDATA[<p>
	Hello all,
</p>

<p>
	We have agents running over multiple rds environments.
</p>

<p>
	Pulseway has patched Net.Framework
</p>

<p>
	After this patch Pulseway dashboard is showing those systems as offline but they are up.
</p>

<p>
	What ive tried:
</p>

<ul>
	<li>
		Executing the PCMonitor.exe is not showing or doing anything
	</li>
	<li>
		Reboot rds servers
	</li>
	<li>
		Restarting service PCMonitorsrv.exe in services, is giving me this error: 'Windows could not start the Pulseway service on Local Computer / Error 1053: The service did not respond to the start or control request in a timely fashion.
	</li>
</ul>

<p>
	Weird thing is, Pulseway dashboard is working on those systems, but the agent is not working.
</p>

<p>
	Please help me out!
</p>

<p>
	Regards,
</p>

<p>
	<br />
	Leroy
</p>
]]></description><guid isPermaLink="false">5239</guid><pubDate>Thu, 14 Nov 2024 15:07:53 +0000</pubDate></item><item><title>Vulnerability in On-Prem WebApp</title><link>https://forum.pulseway.com/topic/5352-vulnerability-in-on-prem-webapp/</link><description><![CDATA[<p>How do I reach support to address an issue I've been trying to get resolved for a few years now [Vulnerable JS Library]?</p><div class="ipsRichText__table-wrapper"><table style="min-width: 40px"><colgroup><col style="min-width:20px;"><col style="min-width:20px;"></colgroup><tbody><tr><th colspan="1" rowspan="1"><p></p></th><td colspan="1" rowspan="1"><p></p></td></tr></tbody></table></div>]]></description><guid isPermaLink="false">5352</guid><pubDate>Fri, 01 Aug 2025 14:33:22 +0000</pubDate></item><item><title>Price amount generate back to 0.00 on Billing link after posting on Billing Review</title><link>https://forum.pulseway.com/topic/5344-price-amount-generate-back-to-000-on-billing-link-after-posting-on-billing-review/</link><description><![CDATA[<p>Good day, I was testing the billing for different contracts. <br>I was testing the billing for retainer hours services. I added time on a sample ticket I created, and ready to post the hours on the billing review. Instead of posting the retainer hours on the retainer link on the billing review, I was using the labor hours link in the billing review. This is to monitor the actual hours used in a month, so I choose to use the retainer hours contract for that. Now here's the problem I encountered.<br><br>After I post the Labor hours on the billing review page with 5$ price per hour, when viewing the details on the billing link, the price amount generated was 0.00.<br>It should show the 5$ amount that I posted from the billing review right?<br><br>Can someone help me with this? </p>]]></description><guid isPermaLink="false">5344</guid><pubDate>Mon, 21 Jul 2025 13:35:07 +0000</pubDate></item><item><title>S.M.A.R.T. disk error notification not working</title><link>https://forum.pulseway.com/topic/5305-smart-disk-error-notification-not-working/</link><description><![CDATA[<p>I have S.M.A.R.T. disk error notification enabled as critical for all our Windows machines but I have one machine that has a failing SSD according to <span style='font-family: "Arial", "Helvetica", sans-serif'>CrystalDiskinfo but no notification was sent/reported with Pulseway.  Is there a known issue with </span>S.M.A.R.T. disk error notifications? Or is there a configuration error I made? </p>]]></description><guid isPermaLink="false">5305</guid><pubDate>Thu, 22 May 2025 19:45:39 +0000</pubDate></item><item><title>Your request Status is: Enqueued - How to fix this</title><link>https://forum.pulseway.com/topic/5335-your-request-status-is-enqueued-how-to-fix-this/</link><description><![CDATA[<p>I'm trying to post a bill and it keeps sending me this system message, "<span style="font-family: inherit">Your request Status is: Enqueued." It's been 3 hours already.</span><br><span style="font-family: inherit">tried other billing review services, same system message shows, it won't proceed to posting services to billing.</span><br><br><a href="https://forum.pulseway.com/uploads/monthly_2025_07/image.png.3c78e7201dd53314191b464fd18e432b.png" class="ipsAttachLink ipsAttachLink_image ipsRichText__align--block" data-fileid="1465" data-fileext="png" rel=""><img class="ipsImage ipsImage_thumbnailed" data-fileid="1465" src="https://forum.pulseway.com/uploads/monthly_2025_07/image.thumb.png.e0ab5b3485fb8f1dadd5450137c4b4de.png" alt="image.png" width="1000" height="344" loading="lazy"></a></p>]]></description><guid isPermaLink="false">5335</guid><pubDate>Mon, 07 Jul 2025 06:22:12 +0000</pubDate></item><item><title>Low free memory notification not sending</title><link>https://forum.pulseway.com/topic/5302-low-free-memory-notification-not-sending/</link><description><![CDATA[<p>I have no issue setting up and receiving notifications from pulseway on windows server 2019... apart from:<br><br><strong>&gt;Low free memory</strong><br><br>Tested on two machines and it's totally ignored on both. I've tested changing %, high and low and I delete all notifications first, before testing.<br><br>It is the only one I'm having issues with. CPU is fine. Uptime is fine. Processes and event logs.... fine.<br><br>Anyone else experiencing this?</p>
<p><a href="https://forum.pulseway.com/uploads/monthly_2025_05/pwbug.png.5c6589b4927de7b60576bbc7b773e117.png" class="ipsAttachLink ipsAttachLink_image" ><img data-fileid="1440" src="https://forum.pulseway.com/uploads/monthly_2025_05/pwbug.thumb.png.12c693a9777d9bf4efb4baf3f1a0ce9e.png" height="452" width="1000" class="ipsImage ipsImage_thumbnailed" alt="pw bug.png" loading='lazy'></a></p>]]></description><guid isPermaLink="false">5302</guid><pubDate>Thu, 15 May 2025 07:25:21 +0000</pubDate></item><item><title>Pulseway Dashboard - Deleting a notification brings it back within few seconds</title><link>https://forum.pulseway.com/topic/5267-pulseway-dashboard-deleting-a-notification-brings-it-back-within-few-seconds/</link><description><![CDATA[<p>
	Since 24th Jan, when I delete a notification via Pulseway dashboard it come back with same timestamp within in few seconds. However, I am able to delete notifications permanently via the mobile app. Anyone else having the same issue ? 
</p>

<p>
	 
</p>

<p>
	Also, for past 2 weeks pulseway ticketing is very slow, when you try to create a new ticket or add notes etc.. the load time is very high. 
</p>
]]></description><guid isPermaLink="false">5267</guid><pubDate>Tue, 28 Jan 2025 21:26:11 +0000</pubDate></item><item><title>Devices... Roles... Cannot Remove/Edit a role nor delete a listed server</title><link>https://forum.pulseway.com/topic/5272-devices-roles-cannot-removeedit-a-role-nor-delete-a-listed-server/</link><description><![CDATA[<p>
	After our new account set up/successful agent installation, I found a Hyper-V (1 system) role created.<br />
	I cannot delete it or edit it. When I drill down to the actual server involved (which by the way does not play any Hyper-V role in any sense), I get a spinning icon and then a red error message "Data not available".<br />
	<br />
	How can I remove or edit the role? Or remove that machine from that particular role?<br />
	Also is there somewhere in the documentation that outlines the purpose of "Roles" and what I can do with this particular feature?
</p>
]]></description><guid isPermaLink="false">5272</guid><pubDate>Tue, 04 Feb 2025 08:38:24 +0000</pubDate></item><item><title>The agent failed to start the rd session (proxy)</title><link>https://forum.pulseway.com/topic/5207-the-agent-failed-to-start-the-rd-session-proxy/</link><description><![CDATA[<p>
	Hi Pulseway Support,
</p>

<p>
	Since weeks I'm unable to use Remote Desktop for a specific customer through proxy.<br>
	(Although, I can see that the systems are online etc.)
</p>

<p>
	In the settings of Pulseway Manager, I have set the correct proxy. Also, in the debugging logs on the client side the rd request appears to be received, but it still gives me the error (see attachment).
</p>

<p>
	According to the company that there's in between did double check the IP addresses and aligned what's on your page:<br>
	<a href="https://intercom.help/pulseway/en/articles/3436466-pulseway-ip-addresses-used-by-the-pulseway-agent" rel="external nofollow">https://intercom.help/pulseway/en/articles/3436466-pulseway-ip-addresses-used-by-the-pulseway-agent</a><br>
	(The instance IP address that's linked to my url is also whitelisted).
</p>

<p>
	Sadly, still the same error.
</p>

<p>
	I hope you can help me with this.
</p>

<p><a href="https://forum.pulseway.com/uploads/monthly_2024_09/Screenshot2024-09-18113140.png.970ce38ed3d756610e7b6a033c898f5f.png" class="ipsAttachLink ipsAttachLink_image"><img data-fileid="1334" src="https://forum.pulseway.com/uploads/monthly_2024_09/Screenshot2024-09-18113140.png.970ce38ed3d756610e7b6a033c898f5f.png" width="289" class="ipsImage ipsImage_thumbnailed" alt="Screenshot 2024-09-18 113140.png" loading="lazy" height="138.72"></a></p>]]></description><guid isPermaLink="false">5207</guid><pubDate>Wed, 18 Sep 2024 09:57:16 +0000</pubDate></item><item><title>pulsewayd 9.9 hogging CPU on Raspberry Pi B+ (Raspbian Buster)</title><link>https://forum.pulseway.com/topic/5261-pulsewayd-99-hogging-cpu-on-raspberry-pi-b-raspbian-buster/</link><description><![CDATA[<p>
	I have pulseway 9.9 running on 100+ solar-powered Raspberry Pi B+ (Raspbian Buster). They have been running smoothly for over a year, however within the last month on approx. 30 of them, CPU utilisation has increased from 5%-10% to 95%-100%. Stopping pulseway stops the issue and starting again resumes it.
</p>

<p>
	How to go about diagnosing problem?
</p>
]]></description><guid isPermaLink="false">5261</guid><pubDate>Fri, 10 Jan 2025 15:15:45 +0000</pubDate></item><item><title>Custom Tile - Stopped working.</title><link>https://forum.pulseway.com/topic/5254-custom-tile-stopped-working/</link><description><![CDATA[<p>
	Hi
</p>

<p>
	Is there a way to set up an alert when the custom title stops working or starts to error?
</p>

<p>
	We use a tile that connects to an external web host to install our AV/EDR, but it has started saying "Failed to Download" and didn't give an error other than in Title list Ux.
</p>

<p>
	Regards
</p>
]]></description><guid isPermaLink="false">5254</guid><pubDate>Sun, 15 Dec 2024 19:14:00 +0000</pubDate></item><item><title>Unable to create a new scope</title><link>https://forum.pulseway.com/topic/5188-unable-to-create-a-new-scope/</link><description><![CDATA[<p>
	I am unable to create a new scope. <br>
	<br>
	Error: Scope not found.Scope not found.
</p>

<p><a href="https://forum.pulseway.com/uploads/monthly_2024_08/Screenshot2024-08-03at02_37_32.png.eea227a6fcca50aae0297c86d1c5d184.png" class="ipsAttachLink ipsAttachLink_image"><img data-fileid="1322" src="https://forum.pulseway.com/uploads/monthly_2024_08/Screenshot2024-08-03at02_37_32.thumb.png.e8251ef936ec18d0d7830313f9e961ed.png" width="1000" class="ipsImage ipsImage_thumbnailed" alt="Screenshot 2024-08-03 at 02.37.32.png" loading="lazy" height="550"></a></p>]]></description><guid isPermaLink="false">5188</guid><pubDate>Sat, 03 Aug 2024 01:37:59 +0000</pubDate></item><item><title>Fix for "This application version is no longer supported, please update it"</title><link>https://forum.pulseway.com/topic/5199-fix-for-this-application-version-is-no-longer-supported-please-update-it/</link><description><![CDATA[<p>
	We've discovered that some old installations of the Pulseway app are incorrectly displaying the "This application version is no longer supported, please update it" message. To resolve the issue, you just have to sign in again. Our development team is working on releasing an update that detects this situation and prompts you to re-authenticate automatically.
</p>

<p>
	On the Android app, if you don't can't use the "Log out" function, just long press on the app from the home screen and select "Clear storage" and you should be prompted to authenticate when you open the app.
</p>

<p>
	We apologize for the inconvenience caused.
</p>

<p>
	-Paul
</p>
]]></description><guid isPermaLink="false">5199</guid><pubDate>Mon, 09 Sep 2024 15:19:10 +0000</pubDate></item></channel></rss>
