D
Deleted member 178
@NoVirusThanks i'm always amazed how good your timing is to release very valuable projects just when people needs them while "killing" the concurrence at same time
@NoVirusThanks i'm always amazed how good your timing is to release very valuable projects just when people needs them while "killing" the concurrence at same time
Does this program monitor and then block (if found souspicious) executable files? or does it just block if activated through a exploit or parent process?
Well said.NVT's freewares are what beginners should study. They're a perfect starting point to familiarize themselves with some of Windows' weaknesses and how to patch them.
Andreas' utilities cover all the general concepts that most anyone can wrap their head around.
There's no excuse. They're free. All it takes is effort.
The problem is that Average Joe super-beginners does not know such awesome places as MT exist where he\she can gain knowledge that just might save their bank account from being pillaged by a banking Trojan simply by using a freeware like NVT OSA.
Thanks!Very interesting comments, questions, opinions and feedbacks guys
Just as information, here are some more details and characteristics about OSArmor:
1) It doesn't use code injection, API hooking, etc (as @Opcode said) and due to this, it should be compatible with mostly any other security software.
2) It is based on "Process Permit" technology (an anti-exe\application whitelisting "skeleton" framework) that uses a powerful and stable kernel-driver:
Skeleton Framework for Application Whitelisting Software | NoVirusThanks
It is the same "skeleton" used for EXE Radar Pro v3 and v4, and supports XP to 10 (32 and 64-bit), FUS, LUA, etc.
3) It is aimed at adding an additional layer of protection, independently from the security software installed (it can help mitigate and block many different kind of threats).
4) A single rule, i.e "Block suspicious command-line strings" has 100+ smart internal rules that block not just one threat, but many known and unknown ones.
5) We believe that there may always be something that OSArmor can block or mitigate that the installed security software (free or paid) may not catch.
6) It can block not-needed system programs or functionalities that are commonly hijacked\exploited by malware (mitigating a malware attack).
7) It can block common ways used by malware to infect the PC, i.e via malicious documents (DOC, XLS, etc), exploit payloads, fileless attacks, VBS or JS scripts, USB autorun.inf, and so on.
8) As of now, it uses more than 500 internal smart rules that can mitigate and block malware attacks.
Yes we agree with this, OSArmor is built for any user, we started OSArmor with not-experienced users as targets in mind.
We are doing our best to handle all important and common FPs internally (the objective is to have 0 common FPs)
All reported FPs will be fixed in the next days.
I would like to see OS Armor tweaked and have rules added to where it could be considered a full fledged Behavior Blocker (for free)
The only reason I use Voodooshield is because there are no free ones left.
I prefer a AV+BB combo over a AV+Anti-exe combo honestly.
Such as?There are plenty of good working anti-exe's out there.
ERPSuch as?
Such as?
Such as?
Appguard is SRP like Applocker, not anti-exe. AG doesn't prompt like the others, it just blocks or not.NoVirusThanks EXE Pro Radar, VoodooShield, AppGuard, Faronics Anti-Executable.
ERP should stay just an anti-exe, many softs try to be more than what they should be and failed at it by introducing more complexity and bugs.
I would like to see OS Armor tweaked and have rules added to where it could be considered a full fledged Behavior Blocker (for free)
The only reason I use Voodooshield is because there are no free ones left.
I prefer a AV+BB combo over a AV+Anti-exe combo honestly.
100% agreement from me there. I think a BB type product would be much more valuable. There are plenty of good working anti-exe's out there.
Amusingly and honestly, I thought you were going to mention a bunch of "not well known" anti-exes other than those you mentioned. I already know those, in fact, I'm beta-testing Andreas' ERP lolNoVirusThanks EXE Pro Radar, VoodooShield, AppGuard, Faronics Anti-Executable.