The unofficial Shadow Defender Support Thread.

Discussion in 'sandboxing & virtualization' started by Cutting_Edgetech, Feb 14, 2011.

  1. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    SD virtualises whole disk including sector 0 in MBR so I suppose thet VC's encryption is less privileged...but it's my speculation only :) What about RAM access?...SD shouldn't be bypassed espacialy if we enable option "Encrypt write cash".
    BTW - SD's domain is prolongated and valid to 2020.04.25 so someone still care about it :)
     
  2. lucd

    lucd Registered Member

    Joined:
    Jan 30, 2018
    Posts:
    782
    Location:
    Island of Woman
    I understand just these VM escpaing malwares don't let me sleep, pentesters say to update VM as often as possible but SD update is not coming for a while
    I am trying to block system, C: and windows folders as well as powershell with third-party and GPO/SRP to mitigate that
     
    Last edited: May 19, 2019
  3. guest

    guest Guest

    @lucd add an anti-exe to SD, SD won't prevent keyloggers calling home in the active session.
     
  4. lucd

    lucd Registered Member

    Joined:
    Jan 30, 2018
    Posts:
    782
    Location:
    Island of Woman
    yes blocked with exe radar pro, like so (especially the commit vulnerability):
    <category>Alert Dialog</> <action>Ask</> <expression>[Proc.Name = Commit.exe] [Proc.Signer = Yang Ping] [Proc.Path = C:\Program Files\Shadow Defender] [Proc.Hash = 2D918A8734E0ABA607D6A9BFDFFDB543C8825859] [Action = Ask]</> <enabled>1</> <comment></>

    save as xml and load into exe radar
     
  5. guest

    guest Guest

    +1
     
  6. bjm_

    bjm_ Registered Member

    Joined:
    May 22, 2009
    Posts:
    4,453
    Location:
    .
    Hi
    I'm looking at a machine that has
    • 128GB M.2 PCIe NVMe Solid State Drive (Boot) + 1TB 5400 rpm 2.5" SATA Hard Drive
    Wondering whether SD will shadow both the SSD boot drive/storage and the HDD storage.
    I'm told the OS and programs and storage are on the SSD and the 1TB HDD is available for storage.

    Thanks
     
    Last edited: May 23, 2019
  7. ronald739

    ronald739 Registered Member

    Joined:
    Nov 9, 2011
    Posts:
    130
    Location:
    Australia
    I believe with SD you are able to select the drives or partitions to shadow.

    I could be wrong on this but I'm sure someone will correct if I am.

    http://www.shadowdefender.com/help.html

    -edit for more info-
     
    Last edited: May 23, 2019
  8. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    As @ronald739 said...SD should detect SSD as normal HD or removable USB...each listed disk ("Mode Setting" module) can be included into Shadow Mode.
     
  9. bjm_

    bjm_ Registered Member

    Joined:
    May 22, 2009
    Posts:
    4,453
    Location:
    .
    Okay.
    Thanks
     
  10. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,160
    You can select the drives to Shadow

    but

    I usually only select the full drives to put in Shadow Mode. I have never tried a partition or partitioned split disk with different drive letters/names part shadowed/part not.
    Maybe other members have some experience in that area.

    Patrick

     
  11. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,796
    Location:
    .
    You are correct. One can select to shadow full drives or individual partitions on a drive.
    My setup is just like that.
     
  12. Rico

    Rico Registered Member

    Joined:
    Aug 19, 2004
    Posts:
    2,286
    Location:
    Canada
    Hmmm! Got license for SD, recommended to many, used regularly my machine & my wife's machine. Religion was go on line 'Shadow Mode'!

    My wife & I use KIS & MBAM, it just does not seem (now) necessary to use "SD"

    I could be wrong & appreciate y'all schooling me, but I'd like to see from SD is:

    Automatically with SD installed start any Browser, and your in SM.

    Less cumbersome, DL & install: DL & install in SM, software okay, DL & install again not in SM.

    Okay! Scare me & I'll re-install!
     
  13. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,126
    Location:
    U.S.A. (South)
    You can plug in USB Flash Drives and they're covered too?
     
  14. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,796
    Location:
    .
    TBH I haven't tried yet but I believe they are, look:

    g.png

    Drive X: is a UFD FAT formatted and SD seems to cover ramdisks too, R: is a ramdisk. Don't know.
     
  15. EASTER

    EASTER Registered Member

    Joined:
    Jul 28, 2007
    Posts:
    11,126
    Location:
    U.S.A. (South)
    Appreciate that.

    Haven't tested it yet simply because there wasn't a necessity, BUT, since IT IS listed in SD I assumed if needed those USB Volumes would also go shadow/covered just the same.
     
  16. aldist

    aldist Registered Member

    Joined:
    Nov 8, 2017
    Posts:
    1,103
    Location:
    Lunar module
  17. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
  18. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,160
  19. CloneRanger

    CloneRanger Registered Member

    Joined:
    Jan 4, 2006
    Posts:
    4,978
    Well well well !

    SOS must have had contact with someone at SD to get permission to do this, AND, someone at SD must have coded it with an inbuilt licence.

    So they can be contacted somehow !

    SOS must have a working SD email etc, so SOS would be able to confirm etc this.

    Interesting, & strange at the same time.
     
  20. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,160
    Communication with Tony has always been here, there, and everywhere. Yes, all very strange.
     
  21. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590

    Those are all assumptions. Code could have been hacked. Not sure I'd trust it
     
  22. aldist

    aldist Registered Member

    Joined:
    Nov 8, 2017
    Posts:
    1,103
    Location:
    Lunar module
    Hacked, hacked! :argh: https://sharewareonsale.com and https://www.giveawayoftheday.com over the years, hundreds of softwares have been handed out, and before this they have to “hack” it (wrapper), laying the activation inwards. More precisely, software developers distribute their software in this way, popularizing it. Usually before the release of a new version of your software.
    Typically, such software must be installed during the promotion, otherwise it is not activated.
    Usually, the software is distributed only for home use. The update is not provided, the key will not work. The key is the same for everyone.
    With certain simple skills, a "traditional" installer and a key that will have a lifelong status can be extracted from the promotion installer (Unwrapper), but the key will only fit this version of the program.
     
  23. Freki123

    Freki123 Registered Member

    Joined:
    Jan 20, 2015
    Posts:
    336
    They also have a giveaway on a russion site
    w w w.comss.ru/page.php?id=4488
    The user "irfanuas" from "mal.... the other security forum" found it. (Wanted to give the user credit for finding it but not start a "which site is better battle" so no direct link)
    So two sites seems to offer sd now.
     
    Last edited: May 30, 2019
  24. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,160
    I received a reply from Tony
    ...................................................................

    Subject: Re: Is this legitimate?
    From: support <support@shadowdefender.com>
    To: Admin <shadowdefenderforum@gmail.com>
    Date: Thu, 30 May 2019 16:34:39 +0800

    Hi Patrick, Yes, it is legitimate. Best regards, Tony

    On 05/30/2019 00:59, Admin wrote: Hi Tony, I just wanted to ask if this givaway is legitimate? Shadow Defender v1.4.0.680 SharewareOnSale - exclusive installer SharewareOnSale with built-in registration. https://sharewareonsale.com/s/shadow-defender-sale Are you continuing to develop Shadow Defender?

    best wishes

    Patrick -- Admin <shadowdefenderforum@gmail.com>
     
  25. Peter2150

    Peter2150 Global Moderator

    Joined:
    Sep 20, 2003
    Posts:
    20,590
    Excellent. Okay now I'd go for it
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.