Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #51  
Old June 4th, 2012, 06:21 AM
svenfaw svenfaw is offline
Infrequent Poster
 
Join Date: May 2012
Posts: 19
Default Re: ExeWatch

Quote:
Originally Posted by genieautravail
Hello everybody!

Just to say that I have got MY special build today and that I'm very happy with MY new toy!

Many thanks for your kind donation and feedback!
__________________
Author of ExeWatch - http://dre.natverk.org
  #52  
Old June 25th, 2012, 01:06 PM
mattfrog's Avatar
mattfrog mattfrog is offline
Infrequent Poster
 
Join Date: Apr 2012
Location: United Kingdom
Posts: 48
Default Re: ExeWatch

Sven,

I'd like to offer to build you any web pages needed for exewatch if you do not have the time (free of charge of course).

Let me know through PM if you are interested
  #53  
Old June 25th, 2012, 01:16 PM
EASTER's Avatar
EASTER EASTER is offline
Massive Poster
 
Join Date: Jul 2007
Location: U.S.A. (South)
Posts: 4,510
Default Re: ExeWatch

Nice app, lite and active.

Another small suggestion i like to offer is would be nifty if those "4 instant visusal alerts" that indicate a change is underway could be coded in some way to display a simple message within them like: ALERT-ACTIVITY-etc. if you get the drift.

Keep up the good work. Nice job!

Regards EASTER
__________________
★AX 64 Time MachineCurrent Version 1.1.0.996 ★
★Shadow Defender★| EQSecure v4.0 Beta3 |#Sandboxie 4.08 beta# |FirstDefense-ISR|★FileChangeAlarm★ |Reserve Space|
Maxthon 4 | X Iron 17.0 | Chromium 19.0 | CometBird 11

Microsoft Windows 8 64bit (UEFI/GPT) Secure Boot¶
¶Linux Mint 14 MATE¶
  #54  
Old July 9th, 2012, 06:11 AM
svenfaw svenfaw is offline
Infrequent Poster
 
Join Date: May 2012
Posts: 19
Default Re: ExeWatch

Quote:
Originally Posted by mattfrog
Sven,

I'd like to offer to build you any web pages needed for exewatch if you do not have the time (free of charge of course).

Let me know through PM if you are interested

Hi, first of all sorry to reply so late - still dealing with some personal issues.

Thanks a lot for your offer, that's very appreciated. Sure, I'd love to have the website look better and with more content. I'll think a lilttle bit more about the direction I would like the website to take, and then I'll PM (assuming you're still OK to do it).
__________________
Author of ExeWatch - http://dre.natverk.org
  #55  
Old July 9th, 2012, 06:14 AM
svenfaw svenfaw is offline
Infrequent Poster
 
Join Date: May 2012
Posts: 19
Default Re: ExeWatch

Quote:
Originally Posted by EASTER
Nice app, lite and active.

Another small suggestion i like to offer is would be nifty if those "4 instant visusal alerts" that indicate a change is underway could be coded in some way to display a simple message within them like: ALERT-ACTIVITY-etc. if you get the drift.

Keep up the good work. Nice job!

Regards EASTER

Thanks for your feedback, I'm glad you like it. I'll be sure to look into your request. (Please note that as stated earlier, due to time constraints, I do give higher priority to donators for such requests.)
__________________
Author of ExeWatch - http://dre.natverk.org
  #56  
Old July 9th, 2012, 03:34 PM
RJK3 RJK3 is offline
Frequent Poster
 
Join Date: Apr 2011
Posts: 469
Default Re: ExeWatch

Just tested the 'panic mode' on a Zeus drive-by, and the program consistently renamed the dropped executables.

I had my concerns that it wouldn't be able to rename a file that was locked and trying to execute.

Good work to the author
  #57  
Old July 14th, 2012, 12:37 AM
tomazyk's Avatar
tomazyk tomazyk is offline
Frequent Poster
 
Join Date: Dec 2006
Location: Slovenia
Posts: 601
Default Re: ExeWatch

I can't get to the website. Is the site down? Can I get software from other sources?
__________________
ESET Nod32 AV • Sandboxie • EMET • OpenDNS
My security setup in detail
• Always remember you're unique, just like everyone else •

  #58  
Old July 14th, 2012, 01:32 PM
Bob_McCarty's Avatar
Bob_McCarty Bob_McCarty is offline
Regular Poster
 
Join Date: Apr 2006
Posts: 102
Default Re: ExeWatch

Quote:
Originally Posted by tomazyk
I can't get to the website. Is the site down? Can I get software from other sources?

The site has been down for several days now. fyi
__________________
Emsisoft Anti-Malware 7 l Malwarebytes Anti-Malware Pro l Outpost Firewall Pro l Sandboxie l Secunia PSI l Image for Windows l
  #59  
Old July 14th, 2012, 03:09 PM
tomazyk's Avatar
tomazyk tomazyk is offline
Frequent Poster
 
Join Date: Dec 2006
Location: Slovenia
Posts: 601
Default Re: ExeWatch

Quote:
Originally Posted by Bob_McCarty
The site has been down for several days now. fyi
OK, so it's not me... Thanks for info!
__________________
ESET Nod32 AV • Sandboxie • EMET • OpenDNS
My security setup in detail
• Always remember you're unique, just like everyone else •

  #60  
Old July 15th, 2012, 09:40 AM
svenfaw svenfaw is offline
Infrequent Poster
 
Join Date: May 2012
Posts: 19
Default Re: ExeWatch

Hi, sorry for the website downtime.

I'm battling some tough RL problems and the last thing I needed is unexpected DNS issues! I've decided to relocate my web page to the following URL to solve the problem as quickly as possible:
http://dre.redmartian.org/

Sorry for the inconvenience, and expect a new update soon (hopefully)!
__________________
Author of ExeWatch - http://dre.natverk.org
  #61  
Old July 15th, 2012, 03:17 PM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: ExeWatch

Avira warns for HEURcrypted.E when download of exewatch
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #62  
Old July 15th, 2012, 03:33 PM
Amin's Avatar
Amin Amin is offline
Frequent Poster
 
Join Date: May 2012
Location: *NY City*
Posts: 358
Default Re: ExeWatch

Quote:
Originally Posted by Rivalen
Avira warns for HEURcrypted.E when download of exewatch

natural.. avira is detecting it via Heuristic analysis and it causes more FPs

just add it to exclusion list.

Regards,
Amin
__________________
Kingsoft Antivirus 2012 - Light , fast , powerful as Cheetah
Kingsoft PC Doctor - Make your computer stay at peak performance

Kingsoft Official website
Kingsoft Community
  #63  
Old July 16th, 2012, 05:11 AM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: ExeWatch

Most likely since I have H on max. Thanks!
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #64  
Old July 19th, 2012, 02:25 AM
iammike's Avatar
iammike iammike is offline
Regular Poster
 
Join Date: Jun 2012
Location: SE Asia
Posts: 139
Default Re: ExeWatch

@svenfaw

you offer the download from your website as a Zip file, but when downloaded it's not a zip but a exe file.

But 's up for your great program.
  #65  
Old July 19th, 2012, 06:22 AM
svenfaw svenfaw is offline
Infrequent Poster
 
Join Date: May 2012
Posts: 19
Default Re: ExeWatch

Quote:
Originally Posted by iammike
@svenfaw

you offer the download from your website as a Zip file, but when downloaded it's not a zip but a exe file.

But 's up for your great program.

Many thanks for your feedback.
I have just fixed the Zip file issue that you kindly reported.
__________________
Author of ExeWatch - http://dre.natverk.org
  #66  
Old July 27th, 2012, 06:15 AM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: ExeWatch

How do I get it to autostart?
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #67  
Old July 27th, 2012, 08:16 AM
iammike's Avatar
iammike iammike is offline
Regular Poster
 
Join Date: Jun 2012
Location: SE Asia
Posts: 139
Default Re: ExeWatch

^ add a registry string value (REG_SZ) in

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

with the following info

Name: ExeWatch
Data: Full Path to the ExeWatch executable
  #68  
Old July 29th, 2012, 06:03 AM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: ExeWatch

Quote:
Originally Posted by iammike
^ add a registry string value (REG_SZ) in

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run

with the following info

Name: ExeWatch
Data: Full Path to the ExeWatch executable

Thanks for suggestion but I am not savvy enough. Will wait for Sven to fix so that it autoruns.
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #69  
Old July 30th, 2012, 01:07 AM
iammike's Avatar
iammike iammike is offline
Regular Poster
 
Join Date: Jun 2012
Location: SE Asia
Posts: 139
Default Re: ExeWatch

^ Another option would be

Place a Shortcut to ExeWatch in

C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Startup
  #70  
Old July 31st, 2012, 03:19 AM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: ExeWatch

OK - it autostarts. I managed to put it under autostart. Dont know the difference between strtup and autostart functionwise for exewatch.

Now - when do I use the panic-button? And what will Panic do to malware and also to my legit .exes?

In the log there isnt an .exe file I recognize the name of?
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #71  
Old July 31st, 2012, 06:02 AM
iammike's Avatar
iammike iammike is offline
Regular Poster
 
Join Date: Jun 2012
Location: SE Asia
Posts: 139
Default Re: ExeWatch

ExeWatch will only alert on creation of New Files, and the Panic Button will only affect newly created files (exe etc) by renaming them

Use this with extreme caution as it could also rename Legitimate OS / Program Files.

Quote:
In the log there isnt an .exe file I recognize the name of?

Did you install new programs ?

Could you post some of the log file ? Please strip all sensitive data (like user name / computer name etc) from it before you post.
 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 11:38 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums