Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #701  
Old April 2nd, 2013, 06:23 AM
lordraiden's Avatar
lordraiden lordraiden is offline
Very Frequent Poster
 
Join Date: Jan 2006
Posts: 2,193
Default Re: ZeroVulnerabilityLabs ExploitShield

From trusteer rapport

Quote:
Please be advised that the problem with ExploitShield should have been resolved in the latest version of Rapport.
Please update Rapport, and then install ExploitShield. Please contact us again should you encounter any issues while running the two programs side-by-side.

You can download Rapport's latest version from the following link:
http://www.trusteer.com/support/rapp...allation-links
Make sure to restart your computer once Rapport is installed.
__________________
Comodo Internet Security (No AV)
ZeroVulnerabilityLabs ExploitShield | Trusteer Rapport | TrueCrypt | EMET | Secunia PSI
Firefox: Addon security and privacy collection: https://addons.mozilla.org/en-us/fir...den/favorites/
  #702  
Old April 2nd, 2013, 06:27 AM
ZeroVulnLabs ZeroVulnLabs is offline
Developer
 
Join Date: Mar 2012
Location: USA
Posts: 235
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by lordraiden
From trusteer rapport
Thanks for the confirmation!
  #703  
Old April 2nd, 2013, 06:37 AM
lordraiden's Avatar
lordraiden lordraiden is offline
Very Frequent Poster
 
Join Date: Jan 2006
Posts: 2,193
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by ZeroVulnLabs
Thanks for the confirmation!

I think that the combination of ExploitShield and Trusteer Rapport for browser protection is the best available, and both are free. I just need to confirm the compatibility of EMET with TR to add it to my config.
__________________
Comodo Internet Security (No AV)
ZeroVulnerabilityLabs ExploitShield | Trusteer Rapport | TrueCrypt | EMET | Secunia PSI
Firefox: Addon security and privacy collection: https://addons.mozilla.org/en-us/fir...den/favorites/
  #704  
Old April 3rd, 2013, 09:49 AM
vojta vojta is offline
Frequent Poster
 
Join Date: Feb 2010
Posts: 461
Default Re: ZeroVulnerabilityLabs ExploitShield

Yes they have been fully compatible for me since a month now, as I posted back then. I check Firefox and Chrome daily and IE8 from time to time. Both ES and TR inject their DLLs without an issue.
  #705  
Old April 4th, 2013, 06:26 PM
Trespasser's Avatar
Trespasser Trespasser is offline
Frequent Poster
 
Join Date: Mar 2005
Location: Clintwood, Virginia
Posts: 965
Default Re: ZeroVulnerabilityLabs ExploitShield

Hi,
At present I'm running Win 8 Pro 64 bit with Sandboxie 4.01.04 64 bit, ExploitShield 0.9.1 beta, and Software Restriction Policy. I've also added Dr. Pepper's two Sandboxie tweaks ($:ExploitShield64.exe, and *\BaseNamedObjects*\ZVL_IPC_Channel*) to Firefox's configuration. The problem is that in ExploitShield's log nothing is showing up and Shielded applications: 0 while Firefox is sandboxed. If I run Firefox outside Sandboxie then Firefox shows up in the log and Shielded applications: 1. There must be something else missing from the Firefox-Sandboxie configuration that prevents it from working correctly.

Does anyone have any suggestions?

Thank you.

Later...

Bob
__________________
Ubuntu Precise (Cinnamon DE) 12.04 32bit on one laptop, Ubuntu Precise Gnome Fallback 12.04 32bit on another laptop, Ubuntu Precise (Cinnamon DE) 12.04 64bit on our main Desktop, and Xubuntu 12.04 64bit on our spare Desktop.


"I wish I knew as much as I think I do"...
  #706  
Old April 21st, 2013, 01:17 PM
Skiaz Skiaz is offline
Infrequent Poster
 
Join Date: May 2010
Posts: 4
Default Re: ZeroVulnerabilityLabs ExploitShield

Been awfully quiet in here lately....I am not sure if it was deliberate or not but the windows media player issue seems to have vanished with 0.9.1. I have verified this on both of the computers that had issues previously with earlier versions or ExploitShield. Nice work!
  #707  
Old April 21st, 2013, 02:47 PM
ZeroVulnLabs ZeroVulnLabs is offline
Developer
 
Join Date: Mar 2012
Location: USA
Posts: 235
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by Skiaz
Been awfully quiet in here lately....I am not sure if it was deliberate or not but the windows media player issue seems to have vanished with 0.9.1. I have verified this on both of the computers that had issues previously with earlier versions or ExploitShield. Nice work!
With 0.9.1 we added some new optimized detection logic which as a side benefit fixes some of these bugs. But its good to know that this one in particular is fixed. We will delete it from the "known issues" list. Thanks for confirming!
  #708  
Old April 27th, 2013, 12:14 AM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

Hello, will you add an option to manually add shields in application in the free edition or will it only be available in the enterprise edition?
__________________
Do not feed the trolls!
  #709  
Old April 27th, 2013, 04:45 AM
ZeroVulnLabs ZeroVulnLabs is offline
Developer
 
Join Date: Mar 2012
Location: USA
Posts: 235
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by kupo
Hello, will you add an option to manually add shields in application in the free edition or will it only be available in the enterprise edition?
Yes, that's in the backlog. Right now we are working on exclusions to have an option to manage FPs. Here's a sneak peak of what it will look like:


Screen 1: Ability to exclude from the LOG of blocked payloads.
Name:  ScreenShot00299.png
Views: 472
Size:  12.1 KB

Screen 2: New Exclusions tab where you can also manually add to the list.
Name:  ScreenShot00300.png
Views: 474
Size:  10.9 KB
  #710  
Old April 30th, 2013, 07:24 PM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

Hello, I installed latest version. I noticed that if after boot and you open Firefox (right after the system boots) it won't be shielded by ExploitShield. I also noticed that there is some kinda "loading time" for ExploitShield when starting up. (If you right click at the tray icon right after boot, it won't do anything, however my other system tray icon works)
__________________
Do not feed the trolls!
  #711  
Old May 1st, 2013, 04:58 AM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

Possible false positive report.
1. Using Firefox go to this site (RebootRestoreRx) -http://www.horizondatasys.com/en/products_and_solutions.aspx?ProductId=18

2. Download it, (ExploitShield triggers)
__________________
Do not feed the trolls!
  #712  
Old May 1st, 2013, 12:35 PM
ZeroVulnLabs ZeroVulnLabs is offline
Developer
 
Join Date: Mar 2012
Location: USA
Posts: 235
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by kupo
Possible false positive report.
1. Using Firefox go to this site (RebootRestoreRx) -http://www.horizondatasys.com/en/products_and_solutions.aspx?ProductId=18

2. Download it, (ExploitShield triggers)
What does it say in the log window?
  #713  
Old May 1st, 2013, 01:05 PM
Sampei Nihira's Avatar
Sampei Nihira Sampei Nihira is offline
Infrequent Poster
 
Join Date: Apr 2013
Location: Italy
Posts: 48
Default Re: ZeroVulnerabilityLabs ExploitShield

Web Browser Opera.
Download file no problem
0 pop-up ES.
__________________
釣りキチ三平
  #714  
Old May 2nd, 2013, 06:11 AM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

Here is the log window.
Name:  Capture.JPG
Views: 208
Size:  21.8 KB
__________________
Do not feed the trolls!
  #715  
Old May 2nd, 2013, 06:21 AM
ZeroVulnLabs ZeroVulnLabs is offline
Developer
 
Join Date: Mar 2012
Location: USA
Posts: 235
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by kupo
Here is the log window.
Attachment 237976
I see. This is a known bug we've been fixing lately. We'll release a new version soon fix a fix for this and some other things.
  #716  
Old May 2nd, 2013, 06:26 AM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by ZeroVulnLabs
I see. This is a known bug we've been fixing lately. We'll release a new version soon fix a fix for this and some other things.
Hello, I would just like to inform you that all downloads in Firefox are being counted as an exploit. . Hope to test the new version soon.
__________________
Do not feed the trolls!
  #717  
Old May 2nd, 2013, 10:09 AM
kupo kupo is offline
Frequent Poster
 
Join Date: Jan 2011
Posts: 909
Default Re: ZeroVulnerabilityLabs ExploitShield

UPDATE: It is not a bug within ExploitShield, upon further testing, it seems to be a conflict when Firefox is guarded with AppGuard (lockdown).
Doesn't happen when in "High" mode though.
__________________
Do not feed the trolls!
  #718  
Old May 2nd, 2013, 11:18 AM
shadek's Avatar
shadek shadek is offline
Very Frequent Poster
 
Join Date: Feb 2008
Location: Sweden
Posts: 1,786
Default Re: ZeroVulnerabilityLabs ExploitShield

Quote:
Originally Posted by kupo
UPDATE: It is not a bug within ExploitShield, upon further testing, it seems to be a conflict when Firefox is guarded with AppGuard (lockdown).
Doesn't happen when in "High" mode though.

Does it help to add ExploitShield to Power Apps? You could keep using 'lockdown'-mode if that works. :-)
 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 05:37 AM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums