VoodooShield/Cyberlock

Discussion in 'other anti-malware software' started by CloneRanger, Dec 7, 2011.

  1. Moose World

    Moose World Registered Member

    Joined:
    Dec 19, 2013
    Posts:
    921
    Location:
    U.S. Citizen
    Salutations/Greetings!!!:)

    In general questions below:

    @VoodooShield, What is your opinion of ReHIPS?
    https://www.youtube.com/watch?v=8Q2yrjxa0MQ

    And would see any problems with VoodooShield? And ReHIPS together?

    Also,what opinion about WinAntiRansom Plus+ https://www.winpatrol.com/

    Post # 9563 & 9564 agree or not? What do you like about Crystal Security or Webroot with VS?:confused:

    @themorpethian, can you use on non VM? And what are advances?


    Opinions on http://www.fortresgrand.com/products/pf/pf.htm

     
    Last edited: Apr 28, 2016
  2. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,458
    Location:
    Ontario, Canada
    IMO a super light and very strong security combo nothing else needed! :)
     
  3. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Oops, I just noticed while visiting my client that the desktop shield gadget in VS 3.15 will automatically hide temporarily on occasion... although I was not there long enough to figure out what was triggering it. I figured this would happen after all of the changes to the gadget that I made, but there was no way to test every scenario. So whenever you guys see this, please let me know what triggers it and I will fix it asap... it will be a super easy fix, thank you! BTW, for those of you who do not know, I still do computer consulting for my "day job". Hopefully soon I will only be working on VS ;). Oh, and the onsite emergency was just a bad network card ;).
     
  4. andi_cro

    andi_cro Registered Member

    Joined:
    Dec 24, 2013
    Posts:
    49
    Location:
    Croatia
    No mention...you are busy bee with VS and I must say sorry to you bcz. my post is not been directly related to VS!
    btw: Just tweak my sistem with one more layer of security...:D
    I was install CryptoPrevent who tweak Group Policy and now criptomalware even if somehow come to system layer, can't do almost nothing!!!
    Funny thing with CP is that he turns himself off after complete his magic and do not use nothing of system resources ( memory or cpu ).

    I hope that CP modification in Group Policy will not trigger problems with VS!
     
  5. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Yeah, CP and VS are NOT compatible at all together. Be back soon!
     
  6. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,458
    Location:
    Ontario, Canada
    Hi Dan! What was the reason not going into Training mode after install again? I did a clean reinstall of 3.15b then rebooted and I got so many blocks of unsigned files VS doesn't give me a chance to whitelist also I have programs installed on D drive?

    Thanks,
    Daniel :)
     
  7. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,458
    Location:
    Ontario, Canada
    What I did just now I shut down both VS processes and deleted everything in ProgramData and restarted VS and I put it in Training until I got it setup as I like again!

    Daniel :)

    2016-04-28_18-20-07.png
     
  8. andi_cro

    andi_cro Registered Member

    Joined:
    Dec 24, 2013
    Posts:
    49
    Location:
    Croatia
    Ufff...sorry to hear that :confused:

    What to do now?
     
  9. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Hey TH... it actually might be a good idea to put VS in Training mode initially by default... we can think about it. It works fine on most systems to go directly into AutoPilot or Smart Mode, but if you have a lot of stuff on your D drive that might be blocked, well, that is a different story ;). So we can think about it and figure it out... it is super easy to change. I installed VS and Webroot on 14 workstations yesterday at a dental office and everything went really well... except their medical software installs on the root of C, it is not signed, and has all of the tell tale signs of malware, so I just put VS in training and launched the medical software, then put VS in either smart or autopilot... depending on the user.

    But really, there is no reason to not have VS train for a few minutes. I know we used to do that, but we finally got VS to the point where it pretty much trained itself, unless there is a weird situation like your D drive or some medical software that breaks every rule in the book ;). Thank you!
     
  10. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,458
    Location:
    Ontario, Canada
    You don't need CP with VS IMO!
     
  11. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Very cool, that will work!
     
  12. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Hehehe, VS is great at blocking ransomware... you really do not need any specialty product.
     
  13. Triple Helix

    Triple Helix Specialist

    Joined:
    Nov 20, 2004
    Posts:
    13,458
    Location:
    Ontario, Canada
    Cool very nice! ;)
     
  14. Iangh

    Iangh Registered Member

    Joined:
    Jul 13, 2005
    Posts:
    857
    Location:
    Melbourne, Australia
    Re training mode, I think that this is the way to go. I re-installed and started with Training. Then I re-booted. After a few minutes on the web VS popped-up to ask whether I wanted to turn on protection. I switched it into Smart and got another pop-up from Panda (psevents.exe) a few minutes later. I'll give it another day before installing on the Mrs' PC, leaving it in training mode for a few hours to ensure VS catches the Panda alerts. I'll then put it in Autopilot, which is what I'm now using. That should make it Mrs-proof. It's very light! Good job.:thumb::thumb::thumb: For somebody that doesn't go near the dark-side the free VS is a great complement to your AV.
     
  15. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,626
    I've upgraded to the 3.15 beta. What happened to the Scan & Allow mode? I am now running in Smart mode, and whenever I launch cmd, which I do several times a day, I have to wait about 4 seconds for a prompt from VS to let me allow it to run or deny it. With "Scan & Allow" I was not prompted.
     
  16. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,444
    Location:
    Among the gum trees
    @roger_m , you want the new Autopilot Mode.
     
  17. khanyash

    khanyash Registered Member

    Joined:
    Apr 4, 2011
    Posts:
    2,438
    Yeah, I too liked Scan & Allow Mode...it was VS scanners only mode i.e Blacklist Scan & VoodooAi Only...was perfect for my family laptop of average users.

    Now Scan & Allow Mode is renamed to Auto Mode & more than VS scanners i.e cmd, scripts, etc...too...This I dont like coz already 2 modes are available for strong & max protection...Scan & Allow Mode was kinda easy mode.

    Scan & Allow Mode should be back, what you say?
     
  18. roger_m

    roger_m Registered Member

    Joined:
    Jan 25, 2009
    Posts:
    8,626
    @Krusty13 Autopilot Mode made no difference.
    @yesnoo Yes, I think it should be brought back too.
     
  19. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Yeah, I will fix the cmd block... there is a safe way to do it... sorry about that. BTW, I was going to try to catch up on the posts tonight, but I really need to step away from the computer. Talk to you guys soon, thanks again for all of your help!

    Thank you Krusty, yeah, AutoPilot is basically an enhance version of Scan & Allow, but since there were so many changes, there will be a few tweaks, like the cmd block that we will have to fix, but it will be super easy.
     
  20. Krusty

    Krusty Registered Member

    Joined:
    Feb 3, 2012
    Posts:
    10,444
    Location:
    Among the gum trees
    Sorry Dan, I was prompted for a Command Line but closed the pop-up without choosing to Block or Allow and VS froze.

    This was the Command Line, if it helps.

    Code:
    "c:\windows\system32\rundll32.exe" "c:\windows\system32\edgehtml.dll",#125 s-1-15-2-3615333805-374319225-3870309745-360125604-1386518793-4086968991-3261710083
     
  21. Moose World

    Moose World Registered Member

    Joined:
    Dec 19, 2013
    Posts:
    921
    Location:
    U.S. Citizen
    @Triple Helix, Thank you for your answer in post # 9576

    Can someone provide a link for 3.15 beta version of VS?

    Kind regards,
     
  22. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    I really will catch up on the posts that I missed asap, but I wanted to respond to a couple now ;).
     
  23. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Boot up protection is a little late in the game… don’t you think? Why not just stop the shell code (exploit) or payload pre-execution in the previous / initial windows session? Why wait to reboot the computer to stop the malware? Filters might need this feature, but locks do not ;).
     
    Last edited: Apr 29, 2016
  24. VoodooShield

    VoodooShield Registered Member

    Joined:
    Dec 9, 2011
    Posts:
    5,881
    Location:
    United States
    Cool, thank you for testing, I really appreciate it! I just want to make sure... you said "Followed the new GUI AI instructions pop up and mostly quarinteened them on advice."... were there any items that VoodooAi recommended that the user allow? If so, please let me know because I will have to look into this (the whole VoodooAi integration is less than a month old after all) ;). I am assuming (and hoping ;)) that VoodooAi at the very least recommended block, but I wanted to check ;).
     
    Last edited: Apr 29, 2016
  25. Djigi

    Djigi Registered Member

    Joined:
    Aug 13, 2012
    Posts:
    554
    Location:
    Croatia
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.