![]() |
|
#51
|
|||
|
|||
|
Quote:
Many thanks for your kind donation and feedback!
__________________
Author of ExeWatch - http://dre.natverk.org |
|
#52
|
||||
|
||||
|
Sven,
I'd like to offer to build you any web pages needed for exewatch if you do not have the time (free of charge of course). Let me know through PM if you are interested ![]() |
|
#53
|
||||
|
||||
|
Nice app, lite and active.
Another small suggestion i like to offer is would be nifty if those "4 instant visusal alerts" that indicate a change is underway could be coded in some way to display a simple message within them like: ALERT-ACTIVITY-etc. if you get the drift. Keep up the good work. Nice job! Regards EASTER
__________________
★AX 64 Time MachineCurrent Version 1.1.0.996 ★
★Shadow Defender★|
Maxthon 4 | X Iron 17.0 | Chromium 19.0 | CometBird 11
¶Microsoft Windows 8 64bit (UEFI/GPT) Secure Boot¶
¶Linux Mint 14 MATE¶ |
|
#54
|
|||
|
|||
|
Quote:
Hi, first of all sorry to reply so late - still dealing with some personal issues. Thanks a lot for your offer, that's very appreciated. Sure, I'd love to have the website look better and with more content. I'll think a lilttle bit more about the direction I would like the website to take, and then I'll PM (assuming you're still OK to do it).
__________________
Author of ExeWatch - http://dre.natverk.org |
|
#55
|
|||
|
|||
|
Quote:
Thanks for your feedback, I'm glad you like it. I'll be sure to look into your request. (Please note that as stated earlier, due to time constraints, I do give higher priority to donators for such requests.)
__________________
Author of ExeWatch - http://dre.natverk.org |
|
#56
|
|||
|
|||
|
Just tested the 'panic mode' on a Zeus drive-by, and the program consistently renamed the dropped executables.
I had my concerns that it wouldn't be able to rename a file that was locked and trying to execute. Good work to the author ![]() |
|
#57
|
||||
|
||||
|
I can't get to the website. Is the site down? Can I get software from other sources?
__________________
ESET Nod32 AV • Sandboxie • EMET • OpenDNS My security setup in detail • Always remember you're unique, just like everyone else • |
|
#58
|
||||
|
||||
|
Quote:
The site has been down for several days now. fyi
__________________
Emsisoft Anti-Malware 7 l Malwarebytes Anti-Malware Pro l Outpost Firewall Pro l Sandboxie l Secunia PSI l Image for Windows l |
|
#59
|
||||
|
||||
|
Quote:
__________________
ESET Nod32 AV • Sandboxie • EMET • OpenDNS My security setup in detail • Always remember you're unique, just like everyone else • |
|
#60
|
|||
|
|||
|
Hi, sorry for the website downtime.
I'm battling some tough RL problems and the last thing I needed is unexpected DNS issues! I've decided to relocate my web page to the following URL to solve the problem as quickly as possible: http://dre.redmartian.org/ Sorry for the inconvenience, and expect a new update soon (hopefully)!
__________________
Author of ExeWatch - http://dre.natverk.org |
|
#61
|
|||
|
|||
|
Avira warns for HEURcrypted.E when download of exewatch
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro |
|
#62
|
||||
|
||||
|
Quote:
natural.. avira is detecting it via Heuristic analysis and it causes more FPs just add it to exclusion list. Regards, Amin
__________________
Kingsoft Antivirus 2012 - Light , fast , powerful as Cheetah Kingsoft PC Doctor - Make your computer stay at peak performance Kingsoft Official website Kingsoft Community |
|
#63
|
|||
|
|||
|
Most likely since I have H on max. Thanks!
![]()
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro |
|
#64
|
||||
|
||||
|
@svenfaw
you offer the download from your website as a Zip file, but when downloaded it's not a zip but a exe file. But |
|
#65
|
|||
|
|||
|
Quote:
Many thanks for your feedback. I have just fixed the Zip file issue that you kindly reported.
__________________
Author of ExeWatch - http://dre.natverk.org |
|
#66
|
|||
|
|||
|
How do I get it to autostart?
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro |
|
#67
|
||||
|
||||
|
^ add a registry string value (REG_SZ) in
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run with the following info Name: ExeWatch Data: Full Path to the ExeWatch executable |
|
#68
|
|||
|
|||
|
Quote:
Thanks for suggestion but I am not savvy enough. Will wait for Sven to fix so that it autoruns.
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro |
|
#69
|
||||
|
||||
|
^ Another option would be
Place a Shortcut to ExeWatch in C:\Users\All Users\Microsoft\Windows\Start Menu\Programs\Startup |
|
#70
|
|||
|
|||
|
OK - it autostarts. I managed to put it under autostart. Dont know the difference between strtup and autostart functionwise for exewatch.
Now - when do I use the panic-button? And what will Panic do to malware and also to my legit .exes? In the log there isnt an .exe file I recognize the name of?
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro |
|
#71
|
||||
|
||||
|
ExeWatch will only alert on creation of New Files, and the Panic Button will only affect newly created files (exe etc) by renaming them
Use this with extreme caution as it could also rename Legitimate OS / Program Files. Quote:
Did you install new programs ? Could you post some of the log file ? Please strip all sensitive data (like user name / computer name etc) from it before you post. |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|