- Mar 29, 2018
- 7,595
It turns out it was user error. I forgot to remove LNK files from designated file types. I have to get re-familiarized with SRP.H_C works as usual.
It turns out it was user error. I forgot to remove LNK files from designated file types. I have to get re-familiarized with SRP.H_C works as usual.
H_C works on Windows 11 23H2.Is there Windows 11 23H2 support coming? Or what else would be good free alternative besides Hard configurator as cannot use it with my Win11 23H2...
Yes it is. It's equivalent to Avast hardened mode.Is "Block executable files from running unless they meet a prevalence, age, or trusted list criteria" a robust protective rule
Hello @Andy Ful ,
I have a question.
Is "Block executable files from running unless they meet a prevalence, age, or trusted list criteria" a robust protective rule or are there non-sophisticated ways it can be easily bypassed?
OTOH, I've had no problems whatsoever. It just depends on one's situation.I've found that particular option being more trouble then it's worth; in essence creating a lockdown mode where EVERYTHING new-ish needs to be whitelisted in order to run.
Really? Well, curiouser and curiouser. I've had nothing but problems. But I always automate things via scripting and always update my software.
Yes, It can block new installations/updates with low prevalence. The block disappears after about 2 days. One can use that ASR rule set to Warn to avoid most problems.
Of course, it will be inconvenient when one has many applications that auto-update frequently. That is why it is not included in ConfigureDefender HIGH settings.
I just mean that particular ASR option doesn't fit my needs, for reasons you mentioned.
No way, you didn't just contradict yourself here did you, an advanced application is for fun and learning yet so easy a typical users can use them correct. Its not like they could misconfigure into vulnerability.Yes, I know.
Anyway, I do not think that you need H_C or ConfigureDefender. For many MT members, any advanced protection is a kind of insurance, learning, or fun.
Its lack of understanding the operating system and how it works, combined with a lack of understanding of the software that can cause issue Andy, how easy would it be to misconfigure something you don't understand. I can pull posts from this thread all day long demonstrating this if you would like, since you trashed my thread stating otherwise.If I understand correctly, Sponsors=LOLBins?
I'm thinking of @oldschool configuration.If Sponsors=LOLBins, FirewallHardening ADD LOLBins can be obtained in this way too?
1. Press <Load Profile> and choose All_OFF.hdc
2. Press <(Re)Install SRP>
3. Press <Block Sponsors> <Select All>
4. Apply changes.
There are 178 in total.
Is one better than the other? It is better to block LOLBins from FirewallHardening or Sponsors this way. LOLBins contain the same number?
Disclaimer of Warranty
THIS SOFTWARE IS DISTRIBUTED "AS IS". NO WARRANTY OF ANY KIND IS EXPRESSED OR IMPLIED. YOU USE IT AT YOUR OWN RISK. THE AUTHOR WILL NOT BE LIABLE FOR DATA LOSS, DAMAGES, LOSS OF PROFITS OR ANY OTHER KIND OF LOSS WHILE USING THIS SOFTWARE.
Distribution
These tools may be freely distributed as long as no modification is made to it.
Andrzej Pluta (@Andy Ful)
No way, you didn't just contradict yourself here did you, an advanced application is for fun and learning yet so easy a typical users can use them correct. Its not like they could misconfigure into vulnerability.
Its lack of understanding the operating system and how it works, combined with a lack of understanding of the software that can cause issue Andy, how easy would it be to misconfigure something you don't understand. I can pull posts from this thread all day long demonstrating this if you would like,
If you are using this software for fun or learning do become aware of the products disclaimer. Any damage you do to your system or any other issues that may arise are solely the responsibility of the user. The developer that pushes this software as so easy to use, is not responsible once you install his product. If you are not knowledgeable of windows process and procedures or familiar with default deny I would not recommend taking this chance. You are better off using a Security Suit.