Crystal Security 3.7 BETA

Hi @LanDude,

Thank you for the interest. :)
Can someone explain to me how Crystal Secuirty works?

Crystal Security uses multiple engines to detect and remove malware. You can use it with other security suites.
is it only cloud based or has some sort of BB?

Dynamic engine uses rules set to detect malware (does not require any database update and can work in offline mode).

You can also enable Stealth Guard mode to increase protection.

Stealth Guard mode allow only curently installed/downloaded applications. Any new or unknown file will be blocked by default.
It is also possible to exclude any blocked file: add file to Exclusion list or Re-build trusted items list.

If you have any other questions then feel free to let me know anytime. :)

Regards,
Kardo
 
You can also enable Stealth Guard mode to increase protection.

Stealth Guard mode allow only curently installed/downloaded applications. Any new or unknown file will be blocked by default.

Kardo

So, Stealth Guard is something like appguard's lockdown mode, nothing new can be executed?
Example: if i want to install a programme in Stealth guard mode it will automatically blocked upon execution?
 
Last question: Will it block scripts, worms?

@LanDude, By default no. It is focused on applications and archives.
You can always add custom extensions manually via settings:
  1. Go to Settings
  2. Choose Protection
  3. Under File Types click on Custom
  4. Add custom extension
  5. Click Apply
Regards,
Kardo
 
Hi Kardo ,I noticed with latest beta the program is blocking a few windows exe's, it asks if I want to block it or refer it as a false positive.I click the false positive and the windows closes. When I go check the settings crystal security had already blocked the file anyways even though I clicked it as a false positive. So what i did is in settings I went to area where it says block unsafe files instead I put user intervention for unsafe files for now ,could be a bug just thought you should know.
 
Hi @blueblackwow65,

Thank you for the feedback. :)

It is currently by design. When you restore file via:
  • Notification then file will be restored, new entry will be added to Whitelist and blocked entry will remain under Blacklist section.
  • Blacklist section then file will be restored and blocked file entry will be moved from Blacklist to Whitelist.
Regards,
Kardo
 
Ok Thks So should I leave it to block or user intervention?

Hi @blueblackwow65,

Based on your feedback I suggest to use "User intervention".
Dynamic engine already blocked some harmfless files on your system.

With "User intervention" option you can avoid that. :)

Regards,
Kardo
 
Hi,

Just tested latest Beta against following ransomwares:

1. Cerber ransomware (29.05.17) - sample by @silversurfer

Engines: Collective and Dynamic
Threat Score: 42%

2. Shade ransomware (29.05.17) - sample by @silversurfer

Engines: Collective and Dynamic
Threat Score: 51,3%

3. SmartRansom (27.05.17) - sample by @Der.Reisende

Engines: Collective and Dynamic
Threat Score: 82,5%

Dynamic engine can successfully detect new ransomwares. :)

Regards,
Kardo