![]() |
|
#101
|
||||
|
||||
|
That is funny, my reply to Hungjuri's post is shown before his
![]() |
|
#102
|
||||
|
||||
|
Quote:
|
|
#103
|
||||
|
||||
|
No,
Isolate one of the three items of the discussion when you are faced with it. You could have chosen to agree (third option, not guilty unless proven), yet you choose the two which made you deduct that I am telling you what to do. Which I am not, so I agree with the third (not guilty unless proven). |
|
#104
|
||||
|
||||
|
This is going off in some tangent that I don't even understand. (English is not my first language, so sorry). Remember that many new users regard Wilders in high esteem as far as computer security goes. Based off this thread, if I didn't know any better, I wouldn't go near Sandboxie with a ten foot pole. That is not fair to new users and it is not fair to the developer. But I'm done. Cheers!
![]() |
|
#106
|
||||
|
||||
|
Quote:
Problably lost in translation: but we agree on Sandboxie being a solid security application ![]() |
|
#107
|
||||
|
||||
|
Quote:
Thats always my concern with threads here as well. As well as the fanboy stuff I've seen posters here with large post counts writing other security "facts" which are completely inaccurate. Its funny I've seen found new user guides around the net which are much better than our sticky here ![]()
__________________
The Wilders Paradox : "If you visit wilders , you don't need to" ![]() My Setup I recommend this as a "must read" thread |
|
#108
|
||||
|
||||
|
Quote:
It has already been proven with the registry test that malware inside sandboxie can terminate every thing and shut down your pc. http://www.ghostsecurity.com/registrytest/ you should try this registry test and you will see for your self. I do have 2 more Important points to make in this thread as well. 1. Some body who is new to sandboxie, and they are still trying and learning how to use sandboxie and they have not yet configured the start run settings. What if they download malware to their sandbox? and it executes and runs? As Proven in this thread Running malware can bypass Sandboxie. 2. For those of you here who have been using sandboxie for a while, would know that the Start Run Options was only added into sandboxies features a few months ago. Therefore it would be fair to say that only up until a few months ago seen how malware was able to run inside sandboxie, Sandboxie would have been a very "Weak" security product. I read some where on sandboxie website that the reason why start run access was added was because it was to prevent running malware from wasting CPU Usage. But the Real Truth is because to prevent running malware from escaping out of the sandbox. Quote:
politics and mis-information and the ask.com issue have not deterred me from using comodo, What has deterred me from using comodo like I explained before in this thread is its Slow speed at intercepting executables from executing in the first place. The 2 Stop tests here prove that. If that had been real malware and user had Comodo their operating system would be History. So Comodo isn't as Strong as a lot of people think. |
|
#110
|
||||
|
||||
|
Quote:
It was stop.exe and stop2.exe, and no it wasn't specifically targeted to bypass CIS. and I already know how to use sandboxie LOL. I am now instead using Defense wall and Malware defender. They are the STRONGEST programs that can control the behavior of Running programs that I have tested. |
|
#112
|
||||
|
||||
|
Quote:
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#114
|
||||
|
||||
|
Wish he could post some screen shots.
Thanks
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#115
|
||||
|
||||
|
Quote:
its stop them on sight , also SSM,OA block them , Jetico Personal Firewall beta fails stop2, stop tests cheers
__________________
WINDOWS 8 FIREWALL
Sandboxie (64-bit)
Secuirty software no.1~> YOUR SKILLS
Prevention is better than the cure
using win 8 Pro X64
|
|
#116
|
||||
|
||||
|
Quote:
If you mean Malware Defender yes I already posted the results in this thread. Quote:
By the way MD and defense wall are the only 2 products that I know of that can Survive the registry test http://www.ghostsecurity.com/registrytest/ |
|
#117
|
|||
|
|||
|
Can anyone please post Screen Shots on how the latest CIS RC2 stops these tests? I would be interested to know how it intercepts it and if it does.
There seems to be many other bug fixes in this latest RC then the ones mentioned fixed. Cheers, Josh |
|
#118
|
||||
|
||||
|
Quote:
hmm my MD failed to stop htaac.exe and stop2.exe I might give it another go. SSM. are you saying SSM blocked all of them including stop2.exe ? if so SSM would be the only product so far that can block stop2.exe and Its a shame how SSM isn't updated any more. OA. didn't a poster here say before that with stop2.exe with OA their pc hung and became frozen? Jetico. I was wondering about jetico thx for results. |
|
#119
|
||||
|
||||
|
Can someone PM me the test? I would like to test DriveSentry.
Thanks in advance, Toby |
|
#120
|
||||
|
||||
|
Quote:
Add GesWall too in the list. ![]()
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#121
|
||||
|
||||
|
Quote:
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#122
|
||||
|
||||
|
Latest CIS now intercepting all of them.
But pop up for stop 1 is not as clear as those of OA.
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#123
|
||||
|
||||
|
Stop 2
__________________
Ubuntu 12.10 AX64 Time Machine, Comodo FW & Defence Plus, |
|
#124
|
|||
|
|||
|
Quote:
In case of Comodo 3.5, I am able to block all executables, except for htaab.exe, from running by blocking the first alert I get - "explorer.exe is trying to execute..." alert. Is this the alert you are referring to? Or is this the alert before the executable tries to run itself, because I am not certain if blocking explorer.exe from running the sample is blocking the malware or explorer.exe. For htaab.exe, even when I block explorer.exe from running it, it fails to stop it and I get alerts for all further accesses of the sample, blocking which, again, does nothing but freeze my PC. Now this is unacceptable since this the most basic of all that a HIPS should do. |
|
#125
|
||||
|
||||
|
Quote:
Yes it is unacceptable since this the most basic of all that a HIPS should do. Your right. Thats why for me comodo is history. what you described is basically what I found, I specifically remember clicking on the stop test executables and comodo producing ZERO Popups. |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|