![]() |
|
#1
|
|||
|
|||
|
Quote:
http://www.softpedia.com/get/Securit...lacement.shtml http://www.replaceuac.com/ http://www.replaceuac.com/images/alert.jpg http://www.replaceuac.com/images/red_alert.jpg http://www.replaceuac.com/images/options_status.jpg |
|
#2
|
||||
|
||||
|
Just downloaded to test out doesn't seem to do anything at XP! Gonna try it on Vista next...
dja2k
__________________
Member of Online-Armor Beta Test Team! Online-Armor Official Links: Home Page, Support Forum, Online Help, |
|
#3
|
||||
|
||||
|
Quote:
Well that is not a big surprise since XP doesnt have UAC ![]() Quote:
Wow! 10 times a day, jeez what a burden ![]() Other than that to me this seems a bit like SuRun with malware detection. Looks interesting though, it would be nice if one could skip AV using this and if it remebers software like Processmonitor and other software that need deep access into windows (and UAC only alert when the file changes) it could be a keeper. I will try it when I come home. Last edited by sukarof : August 4th, 2008 at 04:53 AM. |
|
#4
|
||||
|
||||
|
Quote:
dja2k
__________________
Member of Online-Armor Beta Test Team! Online-Armor Official Links: Home Page, Support Forum, Online Help, |
|
#5
|
||||
|
||||
|
Oh.. My ignorance shines through again.
I had no idea that XP could have anything to do with UAC, even remotely. sorry. |
|
#6
|
||||
|
||||
|
So if it works for XP it must mean that this proggie gives a UAC to XP, sort of HIPS lite? XP doesnt have any UAC to replace.
That sure would be a nice move. (Well, at least when someone actually notice it doing anything in XP that is ) |
|
#7
|
|||
|
|||
|
Quote:
|
|
#8
|
|||
|
|||
|
Quote:
Confirmed working on W2003 (and quickly uninstalled as I hate UAC prompts and this looks way too much like the original UAC). Anyway, if M$ made their UAC stuff at least this usable, people wouldn't hate it so much. |
|
#9
|
|||
|
|||
|
Dev = Security Stronghold still = rouge software?
Quote:
Perhaps there's a statement somewhere letting users know they have changed their ways. ![]() SiteAdvisor Quote:
Quote:
__________________
Ghost in the Shell Who controls the past controls the future Who controls the present controls the past vmworld Famous errors : No keyboard detected. Press F1 to resume : Not a typewriter : Shut her down Clancy, she pumping mud - Texas Instruments Last edited by Meriadoc : August 4th, 2008 at 09:48 AM. |
|
#10
|
||||
|
||||
|
Quote:
Thanks for the hint. |
|
#11
|
|||
|
|||
|
Quote:
|
|
#12
|
||||
|
||||
|
Quote:
I thought it was free since it is not mentioned anywhere that it will cost money. I have now installed it. Initially the increase of popups compared to UAC is about 1000% (well, maybe not but I havent seen this many popups since I used HIPS damit!!) Every software that I start gives a prompt saying: Quote:
I mean whatta... ![]() Firefox, Shadowprotect, Windows mail you name it... Sure you can white list the prompts, but if I was getting off of clicking on prompts I´d rather use a HIPS like SSM or Ghost security. No good first impression imo. |
|
#13
|
||||
|
||||
|
Softpedia says it`s free http://www.softpedia.com/get/Securit...lacement.shtml
I don`t trust them. Still blocked by HP Hosts http://hosts-file.net/?s=www.securitystronghold.com
__________________
Proud member of ASAP since 2005
|
|
#14
|
||||||||||||
|
||||||||||||
|
Interesting ........ from license.txt
Quote:
Emphasis mine ....... and from the PAD file thats included in the installer; Code:
Couldn't be bothered to change it to reflect the application it actually comes with? Ref: http://64.233.183.104/search?q=cache...lnk&cd=5&gl=uk There doesn't appear to be anything at dancingsnakegames.com now, but there was in April, as evident by the cache from Google. .... and in January; http://web.archive.org/web/20071209104424/www.dancingsnakegames.com/download/ But lets get to something more recent from this company shall we? http://www.siteadvisor.com/sites/securitystronghold.com http://www.emsisoft.com/en/malware/?....Active+Shield ... and from July 08; http://www.americanchronicle.com/vie...?authorID=3195 ... and these articles do one thing - very badly - promotion of TrueSword, via deception. Why via deception? lets take a look at one of the pages shall we; http://www.americanchronicle.com/articles/69968 Quote:
... and where does "My Svchost Fix Wizard" lead to? yep; http://www.securitystronghold.com/solutions/svchost.exe-generic-host-process-win32-services-encountered-problem.html#fix Step 1 proudly displays; Quote:
... with a lovely little "Trusted Vendor" badge next to it. Trusted by who? clicking it doesn't tell me, it just takes me to a download for TrueSword - not very trusted! Step 2, the actual "Fix Wizard" that the articles mention, says; Quote:
DOH! ......... since your articles are pushing this "Fix", you shouldn't be requiring people pay for TS before they can actually use the damn thing!. Quote:
Oh, thats alright then! ......... NOT! Worse still, step 2 is telling people to purchase TS if TS has claimed they don't actually have the infection that the fix is actually for?. What does this fix actually do? if the rest of the page is anything to go by then; Quote:
... did you just pick random infections out of a hat for this one? Not a single one of the articles seems to mention the fact the poor sod has to pay your company, irrespective of whether they are actually infected or not, simply because they've got to pay for the damn "Fix Wizard" ......... Now, lets get back to ReplaceUAC shall we? extracting the installer, which for some reason, seems to want to tell me it is a zip file (probably to try and confuse Universal Extractor - pity I know how to extract it manually isn't it?). What is "EvilProgram.exe" doing there?, and why does it have options to create whatever Preved.exe is? Since preved.exe is a 0KB file when created, and doesn't seem to have anything when viewed with a hex editor, and similarly the registry entry when created, is also empty - what is this for? http://www.virustotal.com/analisis/7...3e8816a681e927 Just for the hell of it, here's 3 other sites he apparently runs; vipdefense.com qwertystudios.com vistaglance.com ... and umm? qwertystudios.com/products/tspyware-scanner/ Quote:
Really? and here's me thinking you needed a database of stuff to actually detect aswell - I highly doubt it is going to provide this. I also doubt it's going to be of any use to people that want to develop an AM that actually detects malware, rather than just claiming it has. Quote:
Quote:
Quote:
Quote:
Quote:
Last edited by LowWaterMark : September 20th, 2008 at 03:21 PM. Reason: uploaded attachment and replaced link within post |
|
#15
|
||||
|
||||
|
omg..that doesnt look good imo.
|
|
#16
|
||||
|
||||
|
Shucks
It was beginning to look like a useful XP alternative that mimiced UAC for Vista but i guess thats a bit too much to expect right? Looked good on type though. But then some things often do only to found out their not compatible or worse. EASTER
__________________
ThreatFire 4.6.0.4 Beta|Power Shadow|SB 3.35 |AE 2|Avz|Sas|Cyberhawk|EQSecure v4.0 Beta3 ! |ScriptTrap| |NOD32|SuRun|FD-ISR| |Deep Freeze|Returnil RVS|DriveSnapshot Digital Imaging System|ProcessGuard 3.5 | High Priority Security Measures
|
|
#17
|
||||
|
||||
|
As an addendum, TrueSword is still generating ludicrous false positives ...... IMHO it should be re-added to the SWW rogue list.
Ignoring the cookies, the only file it actually flagged that wasn't an F/P (the rest, including those it claimed were malware in the registry, were F/P's), was an installer for RelevantKnowledge, that came with KiwiAlpha (and it wasn't actually installed - was just sitting amongst 400+ other malware samples that TS actually missed, including Nuwar samples, lol) Code:
|
|
#18
|
||||
|
||||
|
Oh and, if you want it to "fix" more than 3 things without paying for it, forget it .....
|
|
#19
|
||||
|
||||
|
Quote:
It is here......... http://www.malwarebytes.org/roguenet.php?id=90
__________________
.. |
|
#20
|
||||
|
||||
|
hehe yep, MB has had it listed for a while
![]() |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|