SpyShelter 9.2 released

Discussion in 'other anti-malware software' started by pablozi, Sep 18, 2014.

  1. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    That sounds a bit weird, I don't think that Ghostery modifies memory? Or wait a minute, it probably uses a BHO inside IE, so that would explain it. About the second comment, can you post a screenshot of SS alerting about service/driver state modification?

    Doesn't make a lot of sense, I wonder how Zemana takes care of this.
     
  2. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    I don't want to argue with developer...it's his own app so maybe you should ask them about more detailed answer? ;)
     
  3. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,559
    Location:
    The Netherlands
    @ ichito

    Well, it's not about arguing, but from a technical point of view it's a bit weird. I mean, even legitimate apps trigger this behavior, so a HIPS should always be able to allow it. I don't see the problem: let trusted apps modify "network hooks", and block untrusted apps from doing so. And if these hooks are malicious, you can always use HMPA to alert about it. I don't believe that SS offers this at the moment.
     
  4. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    i set in ask user level and dont need change to No
    and installer of Sandboxie give me alert for state of a service/driver action
    thanks
     
  5. sweater

    sweater Registered Member

    Joined:
    Jun 24, 2005
    Posts:
    1,678
    Location:
    Philippines, the Political Dynasty Capital of the
    Since installing the latest SpyShelter 9.6.5 I could not terminate or end process in Task Manager.It says the operation could not be completed access denied.

    Did it happen the same to you? Or is this something other than spyshelter?
     
  6. Rules

    Rules Registered Member

    Joined:
    Mar 3, 2009
    Posts:
    704
    Location:
    EU
    @sweater

    Might be something else, i've just try right now and i can terminate and end process of Spyshelter and all others ones. Maybe your event viewer could help you.

    Oups! or this option in settings of SpyShelter (see screenshot)

    Rules.
     

    Attached Files:

  7. sweater

    sweater Registered Member

    Joined:
    Jun 24, 2005
    Posts:
    1,678
    Location:
    Philippines, the Political Dynasty Capital of the
    It is not just spyshelter but all of the process running in task manager could not be terminated anymore.
     
  8. Rules

    Rules Registered Member

    Joined:
    Mar 3, 2009
    Posts:
    704
    Location:
    EU
  9. JDackNo

    JDackNo Registered Member

    Joined:
    Oct 27, 2014
    Posts:
    13
    Location:
    FRANCE
    Hello to you all :)

    sweater
    Yes, I noticed exactly the same problem.

    I was looking for the culprit and I think it is Spyshelter.
     
  10. sweater

    sweater Registered Member

    Joined:
    Jun 24, 2005
    Posts:
    1,678
    Location:
    Philippines, the Political Dynasty Capital of the
    Yeah, oks...it works. LoL!!!

    I tried to check that and now I can terminate anything in the task manager with ease. LoL!!!

    Tnx...
     
  11. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    Maybe it can be because of this two latest changes
    "– Self defense enhanced
    – General protection improvements"

    Windows Task Manager is often manipulated by malware to hide malware's own processes or to kill processes of security apps, so SS in this build can better protect itself and other trusted/whitelisted processes? Of course it can be some issue also :thumbd:
     
  12. sweater

    sweater Registered Member

    Joined:
    Jun 24, 2005
    Posts:
    1,678
    Location:
    Philippines, the Political Dynasty Capital of the
    Yap, I think it's an excellent addition to its protective nature..just needs some time for us to be used to it or else it can make the users crazy. LoL!!!

    By the way, do you guys have also checked the option box - Launch the program from the service (early start)?

    Do you think it really makes big difference?
     
  13. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    at least for me it don't make any change with early start.i think cause run it on logon screen
    in the recent version i see icon of SSF very soon on taskbar but still take 2 minutes to protection enabled (gray to blue icon)
    i wish "Block the component execution" feature become global and when activate it just allow run from allowed list
    it is like SRP software
     
  14. Defenestration

    Defenestration Registered Member

    Joined:
    Jul 17, 2004
    Posts:
    1,108
    This was mainly added to solve a conflict with Directory Opus file manager, which could cause a hang.
     
  15. Tony

    Tony Registered Member

    Joined:
    Feb 9, 2003
    Posts:
    725
    Location:
    Cumbria, England
  16. smith2006

    smith2006 Registered Member

    Joined:
    Mar 28, 2006
    Posts:
    808
    9.7 Released

     
  17. ichito

    ichito Registered Member

    Joined:
    Jan 14, 2011
    Posts:
    1,997
    Location:
    Poland - Cracow
    Thanks Smith :thumb:
     
  18. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    hi
    i want set restricted mode for Internet Download Manager,which folder must i add?first work then turn of PC now after turn on i see not working
    i added below folders
    C:\Program Files\Internet Download Manager
    C:\ProgramData\IDM
    C:\Users\username\AppData\Roaming\IDM
    C:\Users\username\Downloads
    i think it is for limited registry.
     
  19. marzametal

    marzametal Registered Member

    Joined:
    Mar 19, 2014
    Posts:
    766
    I use IDM in restricted mode... along with EagleGet.
    C:\Program Files\Internet Download Manager\IDM.exe - add into Restricted Apps list...
    C:\Users\username\AppData\Roaming\IDM - add into Folders with Write Access list...
    C:\Users\username\Downloads - add into Folders with Write Access list...

    I haven't added C:\ProgramData\IDM.

    Also, one last thing worth mentioning... no settings changes via Options sub-menu will commit to IDM permanently while they are made in restricted mode. You must right click IDM in the Restricted Mode tab, run as unrestricted for any changes to commit.
     
  20. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    @marzametal thank you very much it is working now,i can pause,resume
     
  21. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    SpyShelter 9.7.1 update
    Posted on March 13, 2015 in News | Blog Homepage
    We have released a small update in order to fix issues with keystroke encryption driver.
    Full changelog:
    9.7.1 (13/Mar/2015)
    – Fixed issue with process removing in KED
    – Installer and general language updates
    – Minor fixes
     
    Last edited: Mar 13, 2015
  22. Azure Phoenix

    Azure Phoenix Registered Member

    Joined:
    Nov 22, 2014
    Posts:
    1,560
    At keystrokes encryption setting, it is set to "do not encrypt keystrokes of processes specified below". Is it recommended to add other processes? Like for example my antivirus's or other security software's?
     
  23. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    if it cause problem first try Better compatibility mode.if your antivirus have problem with it then add it.
     
  24. co22

    co22 Registered Member

    Joined:
    Nov 22, 2011
    Posts:
    411
    Location:
    router
    SpyShelter 9.7.2 Update
    We have released 9.7.2 update in order to fix a password GUI protection.
    9.7.2 (17/Mar/2015)
    – Fixed issue security issue with password protection of GUI access
    – Farsi installer language update
     
  25. arran

    arran Registered Member

    Joined:
    Feb 5, 2008
    Posts:
    1,156
    SpyShelter HIPS doesn't give you enough options to properly configure. For example if you give firefox permision to execute other applications it doesn't give you the option of what applications it can execute specifically. LIke for example how do allow firefox to execute ONLY Plugin-container.exe and not malware.exe ?
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.