EQSecure 3.41 Settings

Discussion in 'other anti-malware software' started by EASTER, Dec 8, 2007.

Thread Status:
Not open for further replies.
  1. deadmeat

    deadmeat Registered Member

    Joined:
    Mar 27, 2009
    Posts:
    84
    Thanks guys but as I said in my last post I'm not sure which rules to load because there are lots of different version floating around here. Is it possible that you can give me a link to the most suitable set?

    Presumably I have to manually delete my existing default rule set before importing the new ones?

    Do I need to reinstall the program first or can I make these adjustments as it is now?

    Thanks again

    deadmeat
     
  2. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    Malware Defender isn't mature enough for me:


    - The priority mechanism of MD is illogical (you should read the rules from top to bottom, not the opposite). o_O

    As a result, it's adding confusion for absolutely nothing (especially if you have hundreds of rules with many of them imbricating in others).

    - The file, registry and application modules are within the same tab thus adding even more confusion. o_O

    - The Write permission of the registry module is in reality for write, create and delete. o_O

    If you use "Write = Deny", it becomes "Create & Delete = Deny" with all the yet strangely unseen implications.

    - An imported MD ruleset will not be able to adapt to every "environments" as environment variables are lost immediately after rules are validated. o_O

    ...
     
    Last edited: Apr 1, 2009
  3. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    If you want to use one of my rulesets, I suggest you use the latest from http://drop.io/eqsecure ... Instructions are included.

    All my other ones posted in this thread are too old.
     
    Last edited: Mar 31, 2009
  4. deadmeat

    deadmeat Registered Member

    Joined:
    Mar 27, 2009
    Posts:
    84
    Many thanks - much appreciated.
     
  5. deadmeat

    deadmeat Registered Member

    Joined:
    Mar 27, 2009
    Posts:
    84
    Being based in Brazil I need to use a Portuguese version of XP but I imported the rules and everything seems fine. The only problem I had was with a prog called "Taskbar Shufle" which couldn't hook the taskbar. This is probably the least vital app anyone could have anyway and as I hardly use it myself I've dumped it to save hunting for a fix.

    Thanks again guys. Job done!
     
  6. mike21

    mike21 Registered Member

    Joined:
    Jun 1, 2006
    Posts:
    416
    Hi, I would like to defend these 2 points:

    To be out of the ordinary rules of other hips & firewalls, doesn't mean that it is illogical it is just out of the ordinary, or the order that we are used to use. If we give it some time, it may proved that it is on same functionality or better in the particular case.

    The interface needs work, however especially this, the same tab for all rules is more practical for me.

    These are my comments, sorry for being out of topic and Alcyon keep up the good job with eqsecure rulesets.
     
  7. usbmar

    usbmar Registered Member

    Joined:
    Mar 24, 2009
    Posts:
    9
    been out quite a long while
    went backpacking for a week


    BTW does anybody here use EQS 3.41 with server 2003?

    coz ive been using on one system i had and as always rock solid stable..
    still waiting to get my hands on ver4 beta 3 to play with server 2003 ;)

    regards all
     
  8. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    I've lost ~ 600 gigs of data recently so probably EASTER will be able to help!

    In fact, i have to ask him for the complete saved package :)
     
  9. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    EASTER, if you've collected some of my old rulesets, even if it's mostly betas, there's some valuable stuffs so i'd like to have them back, if possible, plus v4b3... What's the frustating part is that i've lost all my translations...

    Btw, there's no more Chinese EQS forums! :eek:
     
    Last edited: Apr 14, 2009
  10. soccerfan

    soccerfan Registered Member

    Joined:
    Oct 15, 2007
    Posts:
    585
    Alcyon, I have some of your rulesets.
    I'm not sure about posting links in this forum but I'll pm you the link.
    PS: Are your proxo rules toast too?

    EDIT: pm sent
     
  11. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,535
    Location:
    U.S.A. (South)
    Don't worry Alcyon.

    It might take me weeks to gather them up but lets put it this way, i have your rulesets scattered over about 20 hard drives and even more partitions, so bear with me and i'll try to round up all of them i can, but it's going to be a job :cool:

    Doesn't surprise me that the EQS Forums are no more but thats what they done to themselves, what they done to us is give us a WORLD CLASS HIPS that is every bit as solid as anything commercially ever developed IMO. Plus they gave us carte blanche to make it even better :D

    EASTER
     
  12. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    Proximitron rules weren't lost, fortunately :)

    Edit: Thanks for the files :thumb:
     
    Last edited: Apr 15, 2009
  13. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    There's nothing to really worry about. These were just old rules, anyway.

    I agree about the quality of the product.. It'll be our best kept secret ;)

    Take care,

    Alcyon.
     
  14. soccerfan

    soccerfan Registered Member

    Joined:
    Oct 15, 2007
    Posts:
    585
    My pleasure. They are yours to begin with :).
    Hope you're are back up and running asap.
     
  15. yudigadget

    yudigadget Registered Member

    Joined:
    Dec 30, 2008
    Posts:
    42
    Can you share: how virus/trojan/etc attack?

    1. autorun.inf
    ok, this is general virus programmer trick to spread their virus, it can spread via USB Storage Device (FlashDisk, External HD,etc), Floppy Disk, CD/DVD ROM, Disk Drive partition (C:\,D:\,etc).
    --
    So, i block it via EQSecure File Protection, on black list i set block read ?:\autorun.inf
    The problem is i can not delete autorun.inf either until i disable EQSecure :(
    2. Favorite virus extension file
    I make some rules to deny possible virus file extension like exe,com,bat,vbs,etc. New trick i found lately: .vmx (virus conficker use this extension!), and then i just need to do white list of trusted application (Microsoft Office, OpenOffice, etc)
    3. via Network
    I have problem with this one. Can you tell me how virus attack and spread from Network (LAN)?
    I know some virus use windows security hole, like famous Sasser virus, etc..
    How do you secure your PC with EQSecure?

    thanks,
    Yudi
     
  16. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,535
    Location:
    U.S.A. (South)
    I'm pretty sure even conficker using autorun.inf must call RunDll32 to make any real malicious moves (correct me if i'm in error here) but i use EQS blacklist rules under File Protections and add RunDll32 alert/accept because some legit apps needs it to run. And with the details EQS shows in it's alert display, it's simple to deny and terminate it if conficker originated.

    EASTER
     
  17. yudigadget

    yudigadget Registered Member

    Joined:
    Dec 30, 2008
    Posts:
    42
    the problem is if someone on other PC got infected with conficker and then attack other PC from LAN?
     
  18. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    Here's a new ruleset, again, for all eqs-junkies:

    eqsecure.v3.41.winxp.rules.v1.51.0423-exp.zip

    What's new: Scanners compatibility fixes, ADS & Application rules added

    http://drop.io/eqsecure
     
    Last edited: Apr 23, 2009
  19. soccerfan

    soccerfan Registered Member

    Joined:
    Oct 15, 2007
    Posts:
    585
    Good to see you up and running again :thumb:
     
  20. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    It's a pleasure! Here's another one:

    eqsecure.v3.41.winxp.rules.v1.53.0424-exp.zip

    What's new: medium-priority rules added

    http://drop.io/eqsecure
     
    Last edited: Apr 24, 2009
  21. arran

    arran Registered Member

    Joined:
    Feb 5, 2008
    Posts:
    1,156
    Does EQS 3.41 work on windows 7 ? anyone tried it?
     
  22. Nizarawi

    Nizarawi Registered Member

    Joined:
    May 26, 2008
    Posts:
    137
    i have a mini prob

    in eqsecure beta 3
    in protection mode they are a may type of protection not activated like loading dll & call remote com &reviewing other process & deep level disk

    if you have any sollution for activate this fonctions
    i will be very happy and thanks

    sorry for my bad english
    :-* :-* :-*
     
  23. Rickster100

    Rickster100 Registered Member

    Joined:
    Sep 29, 2005
    Posts:
    152
    Location:
    United Kingdom
    Alcyon,

    If you still need any of the old rulesets just send me a PM. I have pretty much all of them stored on my HD, around 20 zipped files if needed.
     
  24. Kees1958

    Kees1958 Registered Member

    Joined:
    Jul 8, 2006
    Posts:
    5,857
    Alcyon.

    How did you lose 600 gig of data?

    Regards Kees
     
  25. Alcyon

    Alcyon Registered Member

    Joined:
    Jan 16, 2008
    Posts:
    438
    Location:
    Montr?al, Canada
    Hi Kees. Without going into details, it's because of corrupted nforce4 raid drivers...

    Thanks, Rickster :thumb: I'll send you a PM soon.

    EQS v3.41 doesn't work with Win7... I guess the best alternative is Malware Defender. EQS and MD are quite similar softwares!
    Btw, I've installed build 7100 some days ago and i'm totally addicted.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.