Jump to content


No signature,No protection


  • You cannot reply to this topic
17 replies to this topic

#1 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 29 December 2005 - 03:14 AM

After a coupla months of testing Sandboxie and Defensewall I have turned off my E-trust av,MS antispy and ZAP.

Things are certainly snappier without those three resources running,even with a gig of ram.

There are quite a few others I haven't tried such as Shadow User,Bufferzone and VMware.IMHO these virtualistion type of programs are the future in pc security.

The two virtualisation programs I have tried seem to do as stated.Any and all malaware are contained within the sandbox and are simply deleted when you empty the sandbox.

Running on demand scans with my AV,MS antispy and Ewido have come up clean.

Note I do have a hardware firewall,several ghost images and a clone on a slave drive as the ultimate security.

#2 OFFLINE   Andavari

    Captain Spectacular

  • Moderators
  • 13,328 posts
  • Gender:Male
  • Location:Shadow Moses

Posted 29 December 2005 - 05:54 AM

Glad it works for you, and it's some interesting information. I must say a built-in hardware chipset-based or software OS-based sandbox would really be cool.
Complexity of incoherent design.

#3 OFFLINE   Eldmannen

    Annoyance

  • Banned
  • PipPipPipPipPip
  • 2,198 posts
  • Location:Internet
  • Interests:Free software, open-source, GNU GPL, Linux, security, encryption, privacy, anonymity.

Posted 30 December 2005 - 04:25 AM

Nice. :)

But what is Defensewall?
Shadow User, Bufferzone?

Provide info and links...

Yeh, Sandboxing is interesting...



#4 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 30 December 2005 - 09:27 AM

Defefensewall DefenseWall HIPS (Host Intrusion Prevention System) is the simplest and easiest way to protect yourself from malicious software (spyware, adware, keyloggers, rootkits, etc.) when you surf the Internet!

Sabdboxie Contrast this with the Sandboxie approach, which keeps the viruses and spyware trapped in the sandbox, and makes them disappear when you throw away the sandbox.

Bufferzone But now there's BufferZone, software that utterly prevents the intrusion of hostile code and eliminates updating forever.

Good discussion here under "Privacy & other Antimalaware software" on most of these virtualisation software.

#5 ONLINE   hazelnut

    try to stay calm

  • Moderators
  • 9,459 posts
  • Gender:Female
  • Location:Huddersfield uk

Posted 30 December 2005 - 09:57 PM

Interesting to see from your "Good discussion here" link that Wilderssecurity will be soon hosting the official Ewido forums.
CCLEANER, RECUVA, DEFRAGGLER AND SPECCY DOCUMENTATION CAN BE FOUND HERE

http://www.piriform.com/docs

#6 OFFLINE   rridgely

    I hate computers

  • Moderators
  • 8,858 posts
  • Gender:Male

Posted 30 December 2005 - 10:12 PM

Thanks for pointing that out hazelnut. I will have to do some reading/posting there. B)

#7 ONLINE   hazelnut

    try to stay calm

  • Moderators
  • 9,459 posts
  • Gender:Female
  • Location:Huddersfield uk

Posted 30 December 2005 - 10:36 PM

I have just read up on Sandboxie from Humpty's link above.
This is something that I knew nothing about, it sounds a wonderful idea.
They only thing that put me off was the last bit of an overview page which mentioned that porn site history would no longer be a problem.
I don't think that is a good thing to point out in order to "sell" your product
CCLEANER, RECUVA, DEFRAGGLER AND SPECCY DOCUMENTATION CAN BE FOUND HERE

http://www.piriform.com/docs

#8 OFFLINE   Eldmannen

    Annoyance

  • Banned
  • PipPipPipPipPip
  • 2,198 posts
  • Location:Internet
  • Interests:Free software, open-source, GNU GPL, Linux, security, encryption, privacy, anonymity.

Posted 30 December 2005 - 11:02 PM

Okay, I checked the websites mentioned but none of them give me a good impression.



#9 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 31 December 2005 - 03:51 AM

hazelnut, on Dec 30 2005, 09:57 PM, said:

Interesting to see from your "Good discussion here" link that Wilderssecurity will be soon hosting the official Ewido forums.

View Post

Actually I think Wilders has been hosting Ewido's Official help forum for a coupla weeks now.

Have read somewhere that MS's Vista will be using virtualisation (sandbox) techniques for some of their apps.

Sorry about the the spelling to the links I provided in an earlier thread.Must have been that darn beer again. :rolleyes:

#10 OFFLINE   Andavari

    Captain Spectacular

  • Moderators
  • 13,328 posts
  • Gender:Male
  • Location:Shadow Moses

Posted 31 December 2005 - 06:01 AM

Eldmannen, on Dec 30 2005, 05:02 PM, said:

Okay, I checked the websites mentioned but none of them give me a good impression.

View Post

They didn't impress me that much either, however the DefenseWall HIPS was sort of interesting but for the price one can get HIPS protection in Sunbelt Kerio Personal Firewall paid-version which has been drastically reduced in price after the acquisition of Kerio Personal Firewall from Kerio Technologies.

Humpty, on Dec 30 2005, 09:51 PM, said:

Sorry about the the spelling to the links I provided in an earlier thread.Must have been that darn beer again. :rolleyes:

View Post

Aye, your ail must've been giving you ailments. :P
Complexity of incoherent design.

#11 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 31 December 2005 - 06:29 AM

Here's a long but interesting thread where the authors of Bufferzone offered a $100 reward to anyone who could compromise Bufferzones security.

The author of Defensewall (HIPS) states he cracked Bufferzone in 5 mins and claimed the $100.Seems the authors of these programs are testing each others which can only make their products better.

Defensewall author claims reward.

And they seem to get a tad shirty with each other.

#12 OFFLINE   kobrakommander56

    Not Dead

  • Members
  • PipPipPipPip
  • 548 posts
  • Gender:Male
  • Location:VA

Posted 31 December 2005 - 11:59 AM

only 100, haha, i would've told them i could've cracked it, and then when they put me in a room and watch me i'd work on it for five minutes get up and get me some c4 and blow that mother apart, then claim my money.
IPB Image

Insert random C4 joke here.

#13 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 31 December 2005 - 03:19 PM

Hey Mr kobrakommander56 I don't doubt your abiltities but can you
give me a rundown on some uncrackable security software.

#14 OFFLINE   Andavari

    Captain Spectacular

  • Moderators
  • 13,328 posts
  • Gender:Male
  • Location:Shadow Moses

Posted 31 December 2005 - 09:35 PM

kobrakommander56 can get into anything with his C4 collection. He must have gotten more for Christmas.
Complexity of incoherent design.

#15 OFFLINE   Eldmannen

    Annoyance

  • Banned
  • PipPipPipPipPip
  • 2,198 posts
  • Location:Internet
  • Interests:Free software, open-source, GNU GPL, Linux, security, encryption, privacy, anonymity.

Posted 31 December 2005 - 09:56 PM

The author of a DNS daemon called 'djbdns' has stated that he will pay 500$ to whoever finds a security flaw in 'djbdns', its been years and none have been found.

http://cr.yp.to/djbdns/guarantee.html



#16 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 01 January 2006 - 06:13 AM

Eldmannen, on Dec 31 2005, 09:56 PM, said:

The author of a DNS daemon called 'djbdns' has stated that he will pay 500$ to whoever finds a security flaw in 'djbdns', its been years and none have been found.

http://cr.yp.to/djbdns/guarantee.html

View Post

I don't think this is fair offer as djbdns only works under Unix which I think is another operating system.

But I'm sure a bit of C4 could get it apart. ;)

#17 OFFLINE   Eldmannen

    Annoyance

  • Banned
  • PipPipPipPipPip
  • 2,198 posts
  • Location:Internet
  • Interests:Free software, open-source, GNU GPL, Linux, security, encryption, privacy, anonymity.

Posted 01 January 2006 - 06:47 PM

Yeah, but this thread wasnt about bountys on security vulnerabilities so I just pointed that out.
Mozilla Foundation supposedly give 500$ or so for bugs or security vulnerabilites or something in Firefox.



#18 OFFLINE   Humpty

    Super Hero

  • Members
  • PipPipPipPipPip
  • 2,125 posts

Posted 05 January 2006 - 02:12 PM

German av-test.org has tested the major players in AV business against
the new Windows wmf-hole.
Nod32 was one of those who stopped all the tested 206 variants
Here are the results (in parenthesis the missed variants)
Perfect protection:
BitDefender
Computer Associates eTrust - VET
F-Secure
Kaspersky Lab
McAfee
Eset Nod32
Microsoft OneCare
Sophos
Symantec

Inadequate protection:
Alwil Avast (1)
Clam AntiVirus (1)
Aladdin eSafe (1)
Fortinet (1
AntiVir (24)
eTrust - INO (25)
Panda (25)
Ikarus (26)
Norman (26)
Ewido (47)
AVG (59)
VirusBuster (61)
QuickHeal (63)
Trend Micro (63)
Dr Web (93)
VBA32 (110)
Authentium Command (119)
F-Prot (119)

Now have a look at how Sandboxie handled the threat Does Sandboxie protect against latest exploit