View Full Version : Geswall Free and ShadowDefender
trjam
April 7th, 2008, 09:28 PM
Ok, what about this setup. Geswall seems, relative term, to be a tad quicker then Sandboxie. It isolates all while in Shadow mode, which I stay in for extended periods of time. Is this ok, overkill, or missing something. Also, how do you delete the logs.
Geswall isnt bad from what I can tell, early on.
Perman
April 7th, 2008, 09:52 PM
Hi,
This combination sounds good, similar to my setup---SBIE + DW + DeepFreeze.
Differences from yours are: DW will compensate SBIE's weakness (such as Anti logging, Anti leaking capability), DeepFreeze covers all hard disk, unlike SD, which protects volume C only.
My suggestion, GesWall in not a 100% foolproof isolation apparatus, a HIPS may be required for the unthinkable moment.
Take care.
trjam
April 7th, 2008, 09:56 PM
Actually the latest version of SD allows you to cover all drives. I like this setup and so far find no weaknesses except Vista Mail which isnt included. I did email support about this.
solcroft
April 7th, 2008, 09:57 PM
trjam,
AFAIK GeSWall's logs are undeletable for the free version. They'll be purged when they occupy more than 10% HDD space, if I recall. And your setup is fine - as are all other setups, as long as the one who implemented them is able to use them correctly.
Perman, Sandboxie can be configured for some rather powerful anti-leak, anti-keylog, and anti-anything settings. wraithdu posted about this a few threads ago in another Sandboxie thread, I think.
ErikAlbert
April 7th, 2008, 09:59 PM
You can't remove ALL .log-files :
1. some of them are in use and can't be deleted.
2. others are re-created after reboot and it's useless to delete those.
According a search on [C:], I have 13 .log-files. How many do you have ?
Perman
April 7th, 2008, 10:51 PM
-{ Quote: "
Perman, Sandboxie can be configured for some rather powerful anti-leak, anti-keylog, and anti-anything settings. ." }-
Hi,
Thanks for the info, I also saw your post at Kafan, :thumb: :thumb:
I will implement your advice.
aigle
April 7th, 2008, 10:58 PM
-{ Quote: "My suggestion, GesWall in not a 100% foolproof isolation apparatus" }-
That is true of any security software.
MikeNAS
April 8th, 2008, 02:49 AM
-{ Quote: "Hi,
This combination sounds good, similar to my setup---SBIE + DW + DeepFreeze.
Differences from yours are: DW will compensate SBIE's weakness (such as Anti logging, Anti leaking capability), DeepFreeze covers all hard disk, unlike SD, which protects volume C only.
My suggestion, GesWall in not a 100% foolproof isolation apparatus, a HIPS may be required for the unthinkable moment.
Take care." }-
DefenseWall + Sandboxie & Shadow Defender here. Yeah SD covers all hard disk and even usb memorys too. Much stronger and secure than DeepFreeze :D
I have added pop-up free firewall too because my laptop is used in many places and networks. Now I'm waiting xB 2.0 Beta invite so I can test that.
Perman
April 8th, 2008, 09:19 AM
-{ Quote: " Yeah SD covers all hard disk and even usb memorys too. Much stronger and secure than DeepFreeze" }-
Hi,
I have a paid copy of SD v.1.1.0.237.
Last time I used it, seems to me it can only shadow one volume at a time. I have local disks C,E and a ramdisk H(created by virtual drive pro). I use ramdisk to speed up window performance ( I am completely sold on the theory that reading from ram is much faster than from harddisk ?).
I will take a look again at SD, DF seems not to protect lower level risk. And DF's staff has refused to add that protection (reading from other thread here), this worries me.
Take care.
trjam
April 8th, 2008, 08:40 PM
So Perman, what did you find out.:)
trjam
April 8th, 2008, 09:01 PM
I have to admit, I prefer Geswall much more then SafeSpace. Just wish the overall cost was a tad bit lower but, it really is a great application.:thumb:
Peter2150
April 8th, 2008, 09:28 PM
-{ Quote: "Hi,
I have a paid copy of SD v.1.1.0.237.
Last time I used it, seems to me it can only shadow one volume at a time. I have local disks C,E and a ramdisk H(created by virtual drive pro). I use ramdisk to speed up window performance ( I am completely sold on the theory that reading from ram is much faster than from harddisk ?).
I will take a look again at SD, DF seems not to protect lower level risk. And DF's staff has refused to add that protection (reading from other thread here), this worries me.
Take care." }-
Latest SD v237 shadows all disks here.
trjam
April 8th, 2008, 09:30 PM
This is what I see.
Peter2150
April 8th, 2008, 11:16 PM
Same here. Just check them both.
Perman
April 8th, 2008, 11:21 PM
Hi,, Trjam, Peter:
Finally I got around to deal with SD. I reinstall with new d/l , everything goes well, except it still can not shadow the virtual ram disk H, I guess this is normal.
One quick question: With C, E drive in shadow mode, while ram disk H is not, is there any risk involved ? I mean , is it safe to use this set up? or I better remove that ram disk (still in normal mode) ?
Thanks for your asking.
Peter2150
April 9th, 2008, 12:22 AM
-{ Quote: "Hi,, Trjam, Peter:
Finally I got around to deal with SD. I reinstall with new d/l , everything goes well, except it still can not shadow the virtual ram disk H, I guess this is normal.
One quick question: With C, E drive in shadow mode, while ram disk H is not, is there any risk involved ? I mean , is it safe to use this set up? or I better remove that ram disk (still in normal mode) ?
Thanks for your asking." }-
Intuitively I am not surprised it couldn't shadow the ram disk. I'd remove it.
Pete
Huupi
April 9th, 2008, 04:10 AM
-{ Quote: "Hi,
This combination sounds good, similar to my setup---SBIE + DW + DeepFreeze.
Differences from yours are: DW will compensate SBIE's weakness (such as Anti logging, Anti leaking capability), DeepFreeze covers all hard disk, unlike SD, which protects volume C only.
My suggestion, GesWall in not a 100% foolproof isolation apparatus, a HIPS may be required for the unthinkable moment.
Take care." }-
Surprised about SBIE weaknesses ?:o
MikeNAS
April 9th, 2008, 04:13 AM
-{ Quote: "Surprised about SBIE weaknesses ?:o
Surprised about ShadowDefender only protecting only C:\. ?" }-
It depends what kind of Sandboxie settings you have. If only your browser etc. can run and connect to internet it rock solid. Still I use DW too :D ShadowDefender protects all partitions and usb memorys.
Huupi
April 9th, 2008, 04:26 AM
Thanks Mikenas,i did'nt read all posts after ,these explain my questions. :-X
Huupi
April 9th, 2008, 07:53 AM
-{ Quote: "DefenseWall + Sandboxie & Shadow Defender here. Yeah SD covers all hard disk and even usb memorys too. Much stronger and secure than DeepFreeze :D
I have added pop-up free firewall too because my laptop is used in many places and networks. Now I'm waiting xB 2.0 Beta invite so I can test that." }-
Is there any need for a firewall with your already good protection,i thought it perfectly fit for public places. just me.
afterall with wraithdu rules in SB it should be enough !
Peter2150
April 9th, 2008, 08:51 AM
-{ Quote: "Surprised about SBIE weaknesses ?:o" }-
Weakness? Sandboxie was never designed as a detection tool, so why is it a weakness that it has no keylogger detection capability.
Assuming in one's dodgy surfing a keylogger is downloaded, if it requires drivers or services it's stopped, and even if temporarily installed,l if you empty sandbox right before say using a banking site, it's gone anyway.
Pete
Perman
April 9th, 2008, 09:16 AM
-{ Quote: "Surprised about SBIE weaknesses ?:o" }-
Hi,
Your concern may have been addressed by Solcroft few posting before.
He also published a fix for SBIE to enhance its anti-logging, anti-leaking capabilities in one of the oversea forums. Very amazing. I am in the process to implement it.
Perhaps he can repeat it here in English. :)
Huupi
April 9th, 2008, 10:55 AM
O boys it was just an understatement,you english speaking guys are totally humorless.
For quite some time now i declared loud and clear that i'm a dedicated follower of SBIE,so my ''surprise'' was actually questioning the partial knowledge of the poster, thats it ! period. >:(
Huupi
April 9th, 2008, 11:03 AM
-{ Quote: "Hi,
Your concern may have been addressed by Solcroft few posting before.
He also published a fix for SBIE to enhance its anti-logging, anti-leaking capabilities in one of the oversea forums. Very amazing. I am in the process to implement it.
Perhaps he can repeat it here in English. :)" }-
Who do you mean Wraithdu or Solcroft ? Never heard or read that Solcroft made a fix for SBIE !
ErikAlbert
April 9th, 2008, 11:25 AM
-{ Quote: "Who do you mean Wraithdu or Solcroft ? Never heard or read that Solcroft made a fix for SBIE !" }-
I always thought that Tzuk made the fixes in SBIE.
trjam
April 9th, 2008, 11:31 AM
no offense, but when the hell did this become a sandboxie thread.
Peter2150
April 9th, 2008, 02:53 PM
Removed off topic post. Lets keep it on topic.
Pete
trjam
April 9th, 2008, 03:01 PM
Peter, I have always respected and appreciated your thoughts. I am curious if you have any on Geswall. Not in comparision to another product, but as a whole. I have really found it very configurable, out of the box settings are good, but it doesnt get with much attention beyond agile.
lucas1985
April 9th, 2008, 03:49 PM
GeSWall has some users in this forum: aigle, zopzop, MaB69, me ( :P) and I'm sure there are others.
LoneWolf
April 9th, 2008, 03:52 PM
-{ Quote: "GeSWall has some users in this forum: aigle, zopzop, MaB69, me ( :P) and I'm sure there are others." }-
I'm using it also, excellent app.
Perman
April 9th, 2008, 04:06 PM
Hi,
Now speaking of Shadow Defender, friends oversea told me that he has obtained a new build of SD, which is yet to be realeased publicly. one the new features IS
No reboot required to EXIT shadow mode.
Is is a rumor ? I will get a copy to test it.
trjam
April 9th, 2008, 05:00 PM
I aint sticking my foot in my mouth again.;) :)
aigle
April 9th, 2008, 05:09 PM
-{ Quote: " it doesnt get with much attention beyond agile." }-
Sandboxes are still in their infancy. They need to be marketed a lot before they become popular. Before this time comes, some of them might unfortunately die.
trjam
April 9th, 2008, 05:15 PM
well so far, out of all I have tried and/or own, Geswall is the lightest. I cant believe I had never tried it till now. Pisses me off.:dry:
lucas1985
April 9th, 2008, 05:40 PM
Well, it's fast because it relies on Windows' internals for its "security engine" and the virtualization is minimal, meaning that accesses to the filesystem are done at "native speed".
trjam
April 9th, 2008, 05:44 PM
Which to me is a good thing.;)
internal to a specific application program: to view the file in its native format.
Makav3l1
April 10th, 2008, 03:40 AM
I gave Geswall a try, I liked it but I noticed that when it was installed it slowed down certain aspects of my computer that annoyed me. For instance, with Geswall installed if I opened my computer it would take 5-10 seconds to display the drives and information when before, and after uninstalling, it was almost instantaneous. As someone who looks through their computers folders quite often, it became really annoying to click and wait. Maybe in a future version that can work stuff like that out?
aigle
April 10th, 2008, 03:44 AM
There is something wrong with ur system. GW is not supposed to do this at all, never experienced this.
Makav3l1
April 10th, 2008, 01:14 PM
There is nothing wrong with my system, and yes I installed it several times after full registry cleans and getting rid off everything it installed and it did it every time. I don't know why, but Geswall made "my computer" s first page with all the drives load slowly. Every subfolder was fine, just the first page.
trjam
April 10th, 2008, 04:49 PM
It ok Makav, as we know things work differently on different computers with different apps. Find what works for you and just use it.:)
Makav3l1
April 10th, 2008, 04:58 PM
Have you experienced this?
pidbo
April 10th, 2008, 05:37 PM
-{ Quote: "Hi,
Now speaking of Shadow Defender, friends oversea told me that he has obtained a new build of SD, which is yet to be realeased publicly. one the new features IS
No reboot required to EXIT shadow mode.
Is is a rumor ? I will get a copy to test it." }-
This is the second reference to a Shadow Defender secret beta that I have seen on Wilders...
Can we know whether this is true without any "cloak and dagger"?
I have tried the current version which fails to install properly on my Windows 2000 system and I have sent a number of emails to the developer without reply.
Does anyone know what is going on here or is this some sort of secret club not for members of this forum?
aigle
April 10th, 2008, 05:57 PM
-{ Quote: "It ok Makav, as we know things work differently on different computers with different apps. " }-
I think so. U can also try to post to their support. Or try it on a clean system. I don,t believe on reg cleaners, they can increase the mess rather than decreasing it.
Perman
April 10th, 2008, 06:48 PM
-{ Quote: "This is the second reference to a Shadow Defender secret beta that I have seen on Wilders...
Does anyone know what is going on here or is this some sort of secret club not for members of this forum?" }-
Hi,
There is NO secrecy about anything here , at Wilders. Definitely there is such thing as secret beta testing about SD either.
I happened to stumble into a forum(mind you, an open one, public too,),there are few posting regarding to newer build, accompanying with set up file. How do these people get hold of this file, I have no clue, but I am certain that there is no secrecy implied .
Yesterday, a newer build 246 is released. Now it is out in OPEN, there is no secret/secrecy here , by all means.
I am sorry to hear that your Win2000 could not accommodate new build; I have had similar encounters: I am changing firewalls from Commodo 3 to OA free to PCTools now, just because SD's driver diskpt.sys causes damned BOSD.
I like SD, so I make some changes to accommodate it, wish me luck.:)
trjam
April 10th, 2008, 06:54 PM
Tony, or ShadowDefender, has no secrets or hidden agendas. My joking last night was in referencing my claiming things that didnt pan out. Tony actually only emailed me about it after it was out for release on his site. He is averaging a new version about every 8 weeks and I will go out on a limb here and say I am pretty sure the next one is going to be special from what we discussed.
As far as responding to your emails, this is the downfall to a small operation, or one man operation. But you can pretty much stay up to date here at Wilders.;)
pidbo
April 10th, 2008, 08:38 PM
Thanks for your input Perman and trjam...I didn't mean to be critical...I guess just a bit disappointed that I couldn't get the latest Shadow Defender to install properly on Windows 2000 and the lack of response to my emails about the problem. I too am looking forward (with excitement) to the possibility of Shadow Defender with the promised functions. It is a neat little thing as it stands and with the additions could be fantastic. Although not technically minded I have been watching the development inch along. I'm hoping to use it when it's finally finished with Sandboxie which seems to be "maturing" at a similar rate.
I realize that this is a one man show for Tony and that there are only so many hours in the day... I congratulate him for having created a great, unfussy, useable and useful software but I just wish the communication channels were a bit more open for "Beta" style feedback.
trjam
April 10th, 2008, 08:44 PM
No problem.;) The thing about betas and small operations is, they really need to be done in-house. If something goes wrong, and they do, it might take awhile to get you back up and running compared to Eset,Kas,Avira, Norton or any other vendor with the resources.
fredra
April 11th, 2008, 01:55 PM
@trjam
OK...you have peeked my interest.
I decided to d/l and install SD on my "test" box.(FF+AdBlk+Noscript)
It seems to work, however, when I "exclude" a large file OR a folder with large files, (>10G) it shows a negative impact on my system response time.
I will do further tests and if I find anything I will send it off to the developer for his perusal.
The concept and execution of this application shows promise.
Just my .0000002 cents.
Cheers ;D
ErikAlbert
April 11th, 2008, 02:09 PM
-{ Quote: "@trjam
OK...you have peeked my interest.
I decided to d/l and install SD on my "test" box.(FF+AdBlk+Noscript)
It seems to work, however, when I "exclude" a large file OR a folder with large files, (>10G) it shows a negative impact on my system response time.
I will do further tests and if I find anything I will send it off to the developer for his perusal.
The concept and execution of this application shows promise.
Just my .0000002 cents.
Cheers ;D" }-
I assume that this file or folder belongs to your personal data.
You can also separate your system from data and give each a partition.
Partition C: = Windows and Applications + ShadowDefender
Partition D: = personal data.
fredra
April 11th, 2008, 02:46 PM
@ErikAlbert
Your assumption is correct.
I decided to have the D: partition (data) run in "normal" mode and the C: partition (XP+Apps) run in "shadow" mode.
Thanks for your input.
Cheers ;D
ErikAlbert
April 11th, 2008, 02:56 PM
-{ Quote: "@ErikAlbert
Your assumption is correct.
I decided to have the D: partition (data) run in "normal" mode and the C: partition (XP+Apps) run in "shadow" mode.
Thanks for your input.
Cheers ;D" }-
Very smart of you, that's the way I do it too, no regrets afterwards.
It gives you also total freedom in your system partition without hurting your personal data.
I backup my data every day (only what changed), but hardly my system partition, because it never changes, unless I install a new software.
trjam
April 11th, 2008, 03:00 PM
thanks Erik. Now just be patient for about 8 weeks.;)
MikeNAS
April 11th, 2008, 03:04 PM
-{ Quote: "thanks Erik. Now just be patient for about 8 weeks.;)" }-
That sounds very intresting... ;D
trjam
April 11th, 2008, 06:35 PM
well I bought the Pro version of Geswall and love it. Really is a great application. A tad bit of all areas of security in it.;)
vBulletin® Copyright ©2000-2012, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2012, Wilders Security Forums