Video Review RansomOff - First Look at New User Interface

Discussion in 'Video Reviews' started by Captain Awesome, Oct 1, 2017.

?

Do you like new GUI?

  1. Yes

    42.5%
  2. Need more work

    30.0%
  3. No

    27.5%
  1. HeiDef

    HeiDef From HeiDef
    Developer

    Mar 27, 2017
    77
    415
    US
    What do the alerts say about the blocking of dropbox or chrome? There are a few different reasons why RO will block an app and the alert will list the reason.

    Installations are tricky to deal with but we'll see if there's something we can improve. Do you have a particular installation that you had trouble with?

    And what kind of interference with shutdown?
     
    XhenEd likes this.
  2. shmu26

    shmu26 Level 53

    Jul 3, 2015
    4,293
    13,672
    Utopia
    The interference with app launching and the other things was without alerts. It was silent. But exiting RO resolved the issues.
     
    XhenEd likes this.
  3. Porama6400

    Porama6400 Level 1

    Apr 5, 2017
    26
    29
    Mars
    It looks really suspicious... :unsure::unsure:
     
  4. cimmay

    cimmay Level 2

    Oct 24, 2017
    59
    134
    seattle
    Windows 10
    ESET
    #64 cimmay, Nov 7, 2017
    Last edited: Nov 7, 2017
    I did see the docs about getting error with the Agent. RO was installed again in Advanced mode, but same problem. I rebooted and did not run Agent manually, just waited. Then system was unresponsive and needed a reset.

    The security apps are :
    1. Eset Internet Security 11.0.144.0
    2. AppGuard 4.4.6.1
    3. HitMan Pro 3.7

    As said before I restored all file/folder permissions to default levels using Windows Repair 2018. As suggested in RO Advanced, I white listed RO in AppGuard as "untouched". Eset does not have white listing.
    The OS is Windows 7 Ultimate 64 bit with sp1 and all updates. However I did remove "Application Experience" service for privacy.

    I will try restoring permissions again and give update...
    Windows File permissions were restored to Default. But RO has same problem as before.
    It restored permissions in:
    all services
    users\cimmay\
    programdata
    program files (x86)
    program files
    windows
    I had messed up system32 folder with script, taking control of TrustedInstaller, but looking at it again it may have been reversed. I'm unsure if windows repair 2018 corrected it or not.
     
    XhenEd likes this.
  5. shmu26

    shmu26 Level 53

    Jul 3, 2015
    4,293
    13,672
    Utopia
    Just for the record, I would try without HMPA, which is a known troublemaker, and is bound to conflict with the mitigations of RO.
     
    XhenEd, Sunshine-boy and cimmay like this.
  6. cimmay

    cimmay Level 2

    Oct 24, 2017
    59
    134
    seattle
    Windows 10
    ESET
    I'm not using HMPAlerts. and the RO issue was before HMP was installed yesterday. But thank you for ideas.
     
    Sunshine-boy and shmu26 like this.
  7. HeiDef

    HeiDef From HeiDef
    Developer

    Mar 27, 2017
    77
    415
    US
    In a VM or regular system?
     
    XhenEd likes this.
  8. shmu26

    shmu26 Level 53

    Jul 3, 2015
    4,293
    13,672
    Utopia
    Oops, I misread your post. Sorry...
     
    cimmay likes this.
  9. Prayag

    Prayag Level 4

    Mar 27, 2017
    158
    512
    India
    Windows 7
    Avast
    Hey @HeiDef I have 2 false positives to report.(both of them existed in previous rc also and hasn't been resolved yet).
    Please test ransomoff's false detection with citra emulator and reboot restore Rx(both at the time of installation and uninstallation).
    Hope this issue gets fixed soon.
    Thanks.
    Keep on improving this great stuff.
     
  10. HeiDef

    HeiDef From HeiDef
    Developer

    Mar 27, 2017
    77
    415
    US
    Thanks for the report. We'll take a look.
     
  11. Lightning_Brian

    Lightning_Brian Level 8

    Sep 1, 2017
    357
    1,779
    Information Technology
    USA
    Windows 10
    Norton
    Keep up the great work that you are doing @HeiDef ! We appreciate your great work.
     
    Prayag, HeiDef and XhenEd like this.
  12. shmu26

    shmu26 Level 53

    Jul 3, 2015
    4,293
    13,672
    Utopia
    It did not uninstall clean. It left behind 2 drivers.
     
    TerrakionSmash and Telos like this.
  13. HeiDef

    HeiDef From HeiDef
    Developer

    Mar 27, 2017
    77
    415
    US
    Thanks. Will take a look.
     
    XhenEd likes this.
Loading...
Similar Threads Forum Date
Q&A RansomOff Bug with OneDrive for students Other Security for Windows Jan 15, 2018
Update RansomOff 5.2018.1.6291 (RC1) Other Security for Windows Jan 1, 2018
Update RansomOff 5.2017.365.6848 (RC1) Other Security for Windows Dec 31, 2017