Wilders Security Forums  

Go Back   Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old May 3rd, 2008, 08:49 AM
LUSHER's Avatar
LUSHER LUSHER is offline
Frequent Poster
 
Join Date: Feb 2007
Posts: 440
Default Re: Other programs like Returnil?

Comodo has announced a forthcoming release of a returnil like product in a matter of weeks...
  #27  
Old May 3rd, 2008, 08:55 AM
ErikAlbert ErikAlbert is offline
Incredibly Massive Poster
 
Join Date: Jun 2005
Posts: 9,456
Default Re: Other programs like Returnil?

Quote:
Originally Posted by LUSHER
Comodo has announced a forthcoming release of a returnil like product in a matter of weeks...
Well, I wasn't exactly waiting for the n'th Returnil, we have already so many of them : BaselineShield, DeepFreeze, PowerShadow, Returnil, ShadowDefender, ...
All these simple boot-to-restore solutions are too limited in possibilities.
__________________
ErikAlbert
Security = WinXPproSP3 Firewall + Anti-Executable + DefenseWall HIPS * Recovery = ShadowProtect + FirstDefense-ISR
Malware Survival Rate = 0.00%, but each malware has my sympathy.
  #28  
Old May 3rd, 2008, 09:00 AM
LUSHER's Avatar
LUSHER LUSHER is offline
Frequent Poster
 
Join Date: Feb 2007
Posts: 440
Default Re: Other programs like Returnil?

Quote:
Originally Posted by ErikAlbert
Well, I wasn't exactly waiting for the n'th Returnil, we have already so many of them : BaselineShield, DeepFreeze, PowerShadow, Returnil, ShadowDefender, ...
All these simple boot-to-restore solutions are too limited in possibilities.

Well it is retunril like, but typically comodo tends to throw the kitchen-sink at products so you get stuff like Defense+ which has all the hips features one can think of...

Given this track-record, this product might actually be more like your beloved FDISR product.... Surely you will be excited then....
  #29  
Old May 3rd, 2008, 10:20 AM
QQ2595's Avatar
QQ2595 QQ2595 is offline
Regular Poster
 
Join Date: Jan 2008
Posts: 159
Default Re: Other programs like Returnil?

Quote:
Originally Posted by LUSHER
Comodo has announced a forthcoming release of a returnil like product in a matter of weeks...

interesting news, as I know, Returnil already released a foolish HIPS version last month in china.

http://tieba.baidu.com/f?kz=328975781
  #30  
Old May 3rd, 2008, 10:25 AM
QQ2595's Avatar
QQ2595 QQ2595 is offline
Regular Poster
 
Join Date: Jan 2008
Posts: 159
Default Re: Other programs like Returnil?

Quote:
Originally Posted by ErikAlbert
RobotDog is an executable and should have been terminated by Faronics Anti-Executable as an unauthorized executable or any other software with the same results.
You cannot trust ISR, it's online all the time and ISR needs protection of security softwares.
That was China's mistake : too much faith in ISR.

I have the combination of ShadowProtect, FDISR and Anti-Executable, no robotdog is going to get me.

why Anti-execute? XP limited account also has good effect, I think.

I am waiting for the MJ1011 to release a new virus. she said it can bypass all the ShadowXXXX/HIPS/AV.

http://hi.baidu.com/mj0011/blog/item...5b8127b3b.html

I will test it with anti-execute when I got it.
  #31  
Old May 3rd, 2008, 10:43 AM
EASTER's Avatar
EASTER EASTER is offline
Massive Poster
 
Join Date: Jul 2007
Location: U.S.A. (South)
Posts: 4,596
Default Re: Other programs like Returnil?

Quote:
Originally Posted by QQ2595
why Anti-execute? XP limited account also has good effect, I think.

I am waiting for the MJ1011 to release a new virus. she said it can bypass all the ShadowXXXX/HIPS/AV.

http://hi.baidu.com/mj0011/blog/item...5b8127b3b.html

I will test it with anti-execute when I got it.

Yeah so am i.

If it's anything like that MFC app in the so-called Test Your Hips topic that generated nothing but a BSOD then her next one should really be funny.

I'm sure experimentation for those like that strokes their ego but really looks like to me all those new methods to cut down security apps and such is about run it's course for XP, but then they have to do something with their time right?

What i'm saying, if a user uses the layered approach as most Wilder's Members do then what one doesn't stop something new & unknown, surely another will. Theres simply too many numbers now in the security realm then used to be and they have made up incredible ground on malware by taking a page straight from the malware makers themselves and being creative & subtle.

The high quality latest innovations bear witness to that fact.
__________________
★AX64 Time Machine★
★Shadow Defender★| EQSecure v4.0 |Qihoo 360 Security Triple AV |FirstDefense-ISR|★FileChangeAlarm★ |Registry Backup VSS|
Maxthon 4 | X Iron 17.0 | Chromium 19.0 | Pale Moon 20.1

Microsoft Windows 8 64bit (UEFI/GPT) Secure Boot¶
¶Linux Mint 14 MATE¶
  #32  
Old May 3rd, 2008, 02:29 PM
ErikAlbert ErikAlbert is offline
Incredibly Massive Poster
 
Join Date: Jun 2005
Posts: 9,456
Default Re: Other programs like Returnil?

Quote:
Originally Posted by QQ2595
why Anti-execute? XP limited account also has good effect, I think.

I am waiting for the MJ1011 to release a new virus. she said it can bypass all the ShadowXXXX/HIPS/AV.

http://hi.baidu.com/mj0011/blog/item...5b8127b3b.html

I will test it with anti-execute when I got it.
Who the hell is MJ1011 ? A good malware-writer ?
Well I will tell you this : the good guys don't scare the good guys, that is the job of the bad guys.

Has MJ1011 nothing else to do, than breaking security softwares ?
Why doesn't she write a security software herself, that can't even broken by herself ? Too difficult for her ?
__________________
ErikAlbert
Security = WinXPproSP3 Firewall + Anti-Executable + DefenseWall HIPS * Recovery = ShadowProtect + FirstDefense-ISR
Malware Survival Rate = 0.00%, but each malware has my sympathy.
  #33  
Old May 3rd, 2008, 03:10 PM
Coldmoon's Avatar
Coldmoon Coldmoon is offline
Returnil Moderator
 
Join Date: Sep 2006
Location: North Carolina USA
Posts: 2,750
Default Re: Other programs like Returnil?

Quote:
Originally Posted by QQ2595
interesting news, as I know, Returnil already released a foolish HIPS version last month in china.

http://tieba.baidu.com/f?kz=328975781

Hello QQ2595,
What you are referring to should not be considered a true HIPS implementation. It is simply an additional tool should it be needed that can offer added control, nothing more. Those who currently have mature HIPS implementations or strategies would not have need for it and we do not suggest otherwise.

The more important feature in the new series is the File Protection...

Mike
  #34  
Old May 3rd, 2008, 03:18 PM
LoneWolf's Avatar
LoneWolf LoneWolf is offline
Massive Poster
 
Join Date: Jan 2006
Posts: 3,141
Default Re: Other programs like Returnil?

Quote:
Originally Posted by ErikAlbert
Who the hell is MJ1011 ? A good malware-writer ?

Someone with a real high opinion of members here at Wilders.

http://forum.sysinternals.com/forum_...TID=14328&PN=4
  #35  
Old May 3rd, 2008, 03:27 PM
EASTER's Avatar
EASTER EASTER is offline
Massive Poster
 
Join Date: Jul 2007
Location: U.S.A. (South)
Posts: 4,596
Default Re: Other programs like Returnil?

Let's see, other programs like Returnil.

Returnil is shown a pretty decent leg up on the other virtual apps of it's kind so i'm not sure what we could compare it to that hasn't already been mentioned like Deep Freeze, PowerShadow, etc.

They all have their own respective strengths and limitations however those limits have been reduced to only a few now but some deem very important to them.

Returnil for me is ridiculously simple and easy to use while effecting a very SOLID security measure for the very novice all the way to the professional levels. Personally it boggles my mind how well this is been made to work, and works very well without issue. I like the Virtual Partition & Session Manager as my two favorite features.

I also absolutely admired Power Shadow and still do but since Returnil seen myself slowly but determined migrating only to it.
__________________
★AX64 Time Machine★
★Shadow Defender★| EQSecure v4.0 |Qihoo 360 Security Triple AV |FirstDefense-ISR|★FileChangeAlarm★ |Registry Backup VSS|
Maxthon 4 | X Iron 17.0 | Chromium 19.0 | Pale Moon 20.1

Microsoft Windows 8 64bit (UEFI/GPT) Secure Boot¶
¶Linux Mint 14 MATE¶
  #36  
Old May 3rd, 2008, 04:09 PM
ErikAlbert ErikAlbert is offline
Incredibly Massive Poster
 
Join Date: Jun 2005
Posts: 9,456
Default Re: Other programs like Returnil?

Quote:
Originally Posted by LoneWolf
Someone with a real high opinion of members here at Wilders.

http://forum.sysinternals.com/forum_...TID=14328&PN=4
Oh, I thought it was a woman with a real high I.Q., she surely has a real dirty mouth.
At the BBC they would say : this program contains strong language.
__________________
ErikAlbert
Security = WinXPproSP3 Firewall + Anti-Executable + DefenseWall HIPS * Recovery = ShadowProtect + FirstDefense-ISR
Malware Survival Rate = 0.00%, but each malware has my sympathy.
  #37  
Old May 4th, 2008, 10:43 AM
QQ2595's Avatar
QQ2595 QQ2595 is offline
Regular Poster
 
Join Date: Jan 2008
Posts: 159
Default Re: Other programs like Returnil?

Quote:
Originally Posted by Coldmoon
Hello QQ2595,
What you are referring to should not be considered a true HIPS implementation. It is simply an additional tool should it be needed that can offer added control, nothing more. Those who currently have mature HIPS implementations or strategies would not have need for it and we do not suggest otherwise.

The more important feature in the new series is the File Protection...

Mike

Hello,

In fact, I was impressed when Returnil first brought turnning on protection on the fly.

but I do not like the idea to bring boring anti-execute HIPS in the new chinese version.
  #38  
Old May 5th, 2008, 12:23 AM
Beto Beto is offline
Infrequent Poster
 
Join Date: Jan 2008
Posts: 47
Question Re: Other programs like Returnil?

Quote:
Originally Posted by Scoobs
I've pretty much decided to stick with Returnil for various reasons (it's free, but also works quietly and seemingly very reliably and does what I want), but in case I can save anyone having to ask the same question again...

Having done a bit more reading this thread covers similar programs, and they seem to be:-
  • FDISR
  • RollbackRx
  • Eaz-Fix
  • AyRecovery
  • Radix Reload
  • Roxio BackOnTrack 3 Suite
  • DeepFreeze
  • Returnil
  • ShadowDefender
(List taken shamelessly from post 2 by Erik Albert)

I don't understand, why isn't SBIE on this list too? To me they seem to operate similarly. What am I not understanding? (I am talking from the perspective of "functions").
  #39  
Old May 5th, 2008, 01:30 AM
HURST's Avatar
HURST HURST is offline
Very Frequent Poster
 
Join Date: Jul 2007
Posts: 1,420
Default Re: Other programs like Returnil?

SBIE is not a boot-to-restore solution
__________________
I SandboxIE
 

Wilders Security Forums > Software, Hardware and General Services > sandboxing & virtualization « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 02:35 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums