ReHIPS

Discussion in 'sandboxing & virtualization' started by MrBrian, May 24, 2014.

  1. Tarnak

    Tarnak Registered Member

    Thank you, both. :thumb:
     
  2. guest

    guest Guest

    updated the previous post
     
  3. Tarnak

    Tarnak Registered Member

    Thanks...I don't think I will need to change anything going forward. It was remembering logons for various sites, that I needed when in IE. That has been achieved.
     
  4. paulderdash

    paulderdash Registered Member

    Thanks :thumb:
     
  5. paulderdash

    paulderdash Registered Member

    I had 3 Firefox add-on updates.
    I updated the real system (ReHIPS disabled) and then also the Firefox IE (ReHIPS enabled).
    It seems simpler and it's fine with me, but is that OK?
    Or is best practice to update the real system, delete the IE, then recreate it with the 'Copy User Data' checked?
     
  6. guest

    guest Guest

    @paulderdash it is all on you, i personally recreate the IE because i like clean stuff , since ReHIPS doesn't auto-clean the IE at the moment.

    Consider IE like your OS and recreating it is like clean installing opposed to updating.
     
  7. guest

    guest Guest

    For those interested, on Malwaretips.com , you have a small test of the latest RC of ReHIPS (supposed to be the last beta before stable) in default settings against a dozen of ransomware including petya. So you can see how it behave, the style of the alerts, and what are the virtual desktop (Isolated Environment) employed for isolation.

    I put the link here (if it is against the rules , please delete it): https://malwaretips.com/threads/rehips-against-ransomware.69336/
     
  8. guest

    guest Guest

    ReHIPS beta RC4 (released on march) runs without issues on Creator Update , of course some legit processes aren't whitelisted yet and depending your settings , may generate a prompt (or not).
     
  9. Peter2150

    Peter2150 Global Moderator

    How do your reset the password on that forum?
     
  10. Peter2150

    Peter2150 Global Moderator

    I've been there. Nothing about reseting password What am I missing
     
  11. Mr.X

    Mr.X Registered Member

  12. Peter2150

    Peter2150 Global Moderator

    I would either. But that link just has the option to enter username and password, but nothing about recovery or reset .

    What I am seeing is a database error screen
     
  13. Peter2150

    Peter2150 Global Moderator

    This is what I get ReCrypt.jpg

    and nothing I do gives me anything but the same screen
     
  14. Peter2150

    Peter2150 Global Moderator

    I am the same. Peter2150 is it both here an there.

    Thanks for the help
     
  15. Peter2150

    Peter2150 Global Moderator

    Weird I tried another browser with same results. Anyway thank you very much
     
  16. guest

    guest Guest

    Yeah, i see this a lot. Sometimes it is working, but after clicking on a different thread = Database Error...
     
  17. Peter2150

    Peter2150 Global Moderator

    Thanks Mood. For now giving up. One of the emails got me to the site. I saw the log in plus the password entry, Put in the username and reset passwords, and was back at the same place. Sounds like they really need to work on the website.
     
  18. Peter2150

    Peter2150 Global Moderator

    Thanks SHvFI
     
  19. Peter2150

    Peter2150 Global Moderator

    Got the latest RC up and running. Nothing would run in isolation. That seems strange.
     
  20. paulderdash

    paulderdash Registered Member

    Using a password manager, I always initially get the message 'Your account has already been activated' but then goes on to log in OK.
     
  21. guest

    guest Guest

    @Peter2150

    1- was ReHIPS' processes placed in Power Apps in Appguard ?
     

    Attached Files:

    • AG3.jpg
      AG3.jpg
      File size:
      139.1 KB
      Views:
      18
  22. Peter2150

    Peter2150 Global Moderator

    Bingo. guest guessed it. Will test some more. Although as I think about it I think I turned Appguard off using autoruns. Let me check and get back to you. I've been playing in a VM, but I may have to go live to really see it working. Stay tuned.
     
  23. guest

    guest Guest

    I knew because i know you are using Appguard and it happened to me too :p
     
  24. Peter2150

    Peter2150 Global Moderator

    First I want to thank you guys for the help.

    I turned all the stuff back on an reinstalled the rules. Had no trouble running Adobe reader isolated. But when I tried a piece of malware I got the error it couldn't run isolated. I've attached the logs. The error is near the bottom.

    What I am running is EIS,Appguard, MBAM3, HMPA, and SBIE. I also have Pumpernickel in the VM.

    The failure was a piece of malware. To get it to run I have to turn off EIS and Appguard.
     

    Attached Files:

  25. Peter2150

    Peter2150 Global Moderator

    Ah. Curious what kind of setting and where would they be
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice