AppGuard 4.x 32/64 Bit - Releases

Discussion in 'other anti-malware software' started by Jryder54, Oct 29, 2013.

Thread Status:
Not open for further replies.
  1. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,811
    Location:
    .
    Thanks. I prefer to download a standalone installer though.
     
  2. guest

    guest Guest

    Appguard updated to v4.4.6.1, no issue so far.
     
  3. stackz

    stackz Registered Member

    Joined:
    Dec 27, 2007
    Posts:
    646
    Location:
    Sydney Australia
    https://blueridgenetworks.s3.amazonaws.com/UpdateFolder/AppGuardSetup-4-4-6-1.exe
     
  4. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,811
    Location:
    .
    Thanks a lot.
     
  5. Cutting_Edgetech

    Cutting_Edgetech Registered Member

    Joined:
    Mar 30, 2006
    Posts:
    5,694
    Location:
    USA
    I usually download the installer manually to upgrade, but I used the internal updater this time to make sure it was working ok; the upgrade went well.
     
  6. Cutting_Edgetech

    Cutting_Edgetech Registered Member

    Joined:
    Mar 30, 2006
    Posts:
    5,694
    Location:
    USA
    Thank you! I will use the installer to upgrade when I roll my machine back again.
     
  7. hjlbx

    hjlbx Guest

    Finally... notification of update and required system reboot and no over-write of Publisher's list.

    @mood - I would check the wildcard bugs. I cannot replicate. Maybe I am missing something ?
     
    Last edited by a moderator: Jun 23, 2016
  8. hjlbx

    hjlbx Guest

    @mood - I tried these in Lock Down mode (4.4.6.1):

    User Space - Yes

    c:\windows\system32\sysprep\sysprep.exe (Blocked)
    c:\windows\system32\*\sysprep.exe (Blocked)

    Is this particular wildcard bug dependent upon user created folders\sub-folders ?
     
  9. hjlbx

    hjlbx Guest

    4.4.6.1 still not blocking *.reg script files...
     
  10. guest

    guest Guest

    even in Lockdown Mode?
     
  11. hjlbx

    hjlbx Guest

    No blocking even in Lock Down mode. I suppose it got missed or BRN will implement it later - or they might have changed their minds...
     
  12. XhenEd

    XhenEd Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    536
    Location:
    Philippines
    To make them act it fast, maybe create a benign POC that will show how .reg can be used as a tool of attack, because right now, I think they don't see it as an immediate threat considering that they didn't implement some protection against it.
     
  13. guest

    guest Guest

    Registry exploits are old as the universe and do plenty of nasty stuff. I wonder why it wasn't implemented from the beginning; but for their defense, a registry script is mostly initiated by an executable...so....
     
  14. hjlbx

    hjlbx Guest

    They're fully aware of it...
     
  15. XhenEd

    XhenEd Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    536
    Location:
    Philippines
    Yeah, I know that they're aware of it. But, why on earth did they not implement it? Why is it not one of their top priorities before releasing an update? They fixed some bugs, but not a possible hole in computer's defense.

    Unless, as guest's post implies, it's really not an immediate threat to users. :)
     
  16. hjlbx

    hjlbx Guest

    I don't know why BRN updates things the way they do... seems a bit scatter-brained to me. Maybe under-staffed...

    The people that fix things are limited in what they can do by the "higher-ups." I think there is some internal disagreement about what to fix and what to leave as-is.

    I think if it weren't for Barb's efforts, bug fixes would be a lot slower.

    It's frustrating as a beta tester -- because most of the bug reports I have seen are things that - if fixed - will make AppGuard a better product.
     
    Last edited by a moderator: Jun 23, 2016
  17. XhenEd

    XhenEd Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    536
    Location:
    Philippines
    Yeah
    Or, they're too focused on corporate things.
    Slow responses can also be because of administrative management (i.e. the company's goals, and how it runs).
     
  18. guest

    guest Guest

    Important: try it without any executable at the end of the User-Space entry (remove sysprep.exe from it)
    c:\windows\system32\sysprep <- Ok
    c:\windows\*\sysprep <- Fail

    ---------
    "old bug": All user added Ignored Messages gets deleted after an upgrade.
    Two upgrades within the last 2 days = 2x deleted Entries. That's annoying :cautious:
     
  19. guest

    guest Guest

    Only the Consumer Edition has the "wildcard-feature", but not the Business Edition.
    Maybe that's why the wildcard-bug has ultra-low priority for them.
     
  20. hjlbx

    hjlbx Guest

    Access to Private Folders by any process - including AppGuard processes - will be blocked; it is not a bug but instead by-design.

    * * * * *

    However, I have seen other AppGuard process blocks reported in the Activity Report.

    I reported them to BRN, but did not receive a reply - so I do not know about them.
     
  21. brainrb1

    brainrb1 Registered Member

    Joined:
    Mar 15, 2010
    Posts:
    491
  22. guest

    guest Guest

    All programs started in User-Space can't access Private Folders.
    And Guarded Apps with Privacy=Yes can't access them.

    But AppGuard itself should access Private Folders.
    It's in System Space and not Guarded. :doubt:
     
  23. XhenEd

    XhenEd Registered Member

    Joined:
    Mar 31, 2014
    Posts:
    536
    Location:
    Philippines
    That should be one of the cases where AppGuard blocks itself or some operations of itself.
    It happens randomly to me. And so, reproducing it is difficult.
     
  24. hjlbx

    hjlbx Guest

    Why would you report it ? I am fairly sure it is by design...
     
  25. brainrb1

    brainrb1 Registered Member

    Joined:
    Mar 15, 2010
    Posts:
    491
    Just to make sure :)
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.