New Update VoodooShield CyberLock 7.0

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
Yes, if I understand the developments correctly, there are now three products:
DefenderUI Free, enhances Microsoft Defender Antivirus and can be run with other system hardening tools or VoodooShield.
DefenderUI Pro, enhances Microsoft Defender Antivirus and is a combination of DefenderUI Free and VoodooShield, best to run alone.
VoodooShield, can be run with any AV.

There is also DataDefender and WhitelistCloud Free, but I don't know if @danb is developing them any further.
Yeah, in a month or so when all of the other products are completely up to date, I will take another look at DataDefender. It has a cool concept, but I really need to implement a kernel mode driver to do it right.
 

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
Just installed VS 6.76 beta, default settings: Smart Mode (Aggressive). Here are just a few blocks for portable tools like O&O ShutUp10. Interesting was that 'Process Explorer' I had to allow manually, but instead latest version 'Autoruns' was allowed automatically. No problem anyway ;)
Overall, VS 6.76 beta running smooth, no slow down on execution of any software auto-whitelisted by VS Snapshot (y)
Very cool, thank you for letting me know! From what I remember, Process Explorer and Autoruns are signed with the same certificate, which is a Microsoft certificate, but different from the catalog certificates that they use to sign most of the Windows files. So that would explain why the first one was blocked and the second one was auto allowed.
 

JasonUK

Level 5
Apr 14, 2020
232
Another question please. I have been running Windows Defender hardened with ConfigureDefender, Firewall Hardening & Simple Windows Hardening but is SWH necessary with the new VoodooShield? I noticed on the Hard_Configurator thread that user Digmore_Crusher asked whether SWH should be reset to Windows defaults before installing new VS and Andy Ful answered in the affirmative which would suggest that SWH protection isn't needed but it would be good to have confirmed from the VS side too given that you know exactly what the new engine delivers. Thanks :)
 

oldschool

Level 81
Verified
Top Poster
Well-known
Mar 29, 2018
7,099
Another question please. I have been running Windows Defender hardened with ConfigureDefender, Firewall Hardening & Simple Windows Hardening but is SWH necessary with the new VoodooShield? I noticed on the Hard_Configurator thread that user Digmore_Crusher asked whether SWH should be reset to Windows defaults before installing new VS and Andy Ful answered in the affirmative which would suggest that SWH protection isn't needed but it would be good to have confirmed from the VS side too given that you know exactly what the new engine delivers. Thanks :)
Restore SWH > M$ default. I suggest setting CD at default (@Andy Ful 's suggestion). I suggest enabling: Cloud protection @ Block, Cloud check time @ 50 or 60, ransomware and network protection. CFA optional.
 

Gandalf_The_Grey

Level 76
Verified
Honorary Member
Top Poster
Content Creator
Well-known
Apr 24, 2016
6,566
Restore SWH > M$ default. I suggest setting CD at default (@Andy Ful 's suggestion). I suggest enabling: Cloud protection @ Block, Cloud check time @ 50 or 60, ransomware and network protection. CFA optional.
Or instead of using ConfigureDefender go Dan all the way and use DefenderUI Free at the recommended settings.
Testing/running the combination of DefenderUi Free 1.00 with VoodooShield 6.76 beta right now on Windows 11.
Before removing Andy's programs, I set them to their/windows default values and rebooted my laptop before installing Dan's programs.
 
Last edited:

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
@danb I just tried to install v 6.76 over the top and VS in Smart Mode did not alert to exit, simply killing the install.
Yeah, that is probably because VS's self protection is disabled for the early beta versions, just in case something goes wrong. That way the user can kill VS with the task manager if things go wrong. I will enable it either the next version or the one after. Thank you!
 

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
Another question please. I have been running Windows Defender hardened with ConfigureDefender, Firewall Hardening & Simple Windows Hardening but is SWH necessary with the new VoodooShield? I noticed on the Hard_Configurator thread that user Digmore_Crusher asked whether SWH should be reset to Windows defaults before installing new VS and Andy Ful answered in the affirmative which would suggest that SWH protection isn't needed but it would be good to have confirmed from the VS side too given that you know exactly what the new engine delivers. Thanks :)
I agree, it is not necessary, but it would not be a bad idea to have a "contingency app" during the first couple VS beta versions ;). I think we are in the clear, but there were massive changes to VS, so I just want to make sure everything is just right.

They do play well together, so it certainly would not hurt to have both.
 

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
Or instead of using ConfigureDefender go Dan all the way and use DefenderUI Free at the recommended settings.
Testing/running the combination of DefenderUi Free 1.00 with VoodooShield 6.76 beta right now on Windows 11.
Before removing Andy's programs, I set them to their/windows default values and rebooted my laptop before installing Dan's programs.
That's what I am running now (VS Pro and DefenderUI Free). I am starting to figure out that disabling MD Real-time protection is not quite as handy as the DefenderUI Add Exclusion right click context menu option ;). I downloaded Ransim to test (along with some other stuff), and it seems to be more effective and quicker to just add an exclusion because as we all know, even when MD is off, it still blocks some stuff ;).
 

Shadowra

Level 33
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,287
1637099860016.png


Nice UI :D

LokiBot

1637099938416.png


AgentTesla

1637099982907.png


RedlineStealer

1637100033406.png


Since I have a Pro key, I think I'll have fun with it on video this week-end or next week if I'm not too busy ;)
 

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658
View attachment 261998

Nice UI :D

LokiBot

View attachment 261999

AgentTesla

View attachment 262000

RedlineStealer

View attachment 262001

Since I have a Pro key, I think I'll have fun with it on video this week-end or next week if I'm not too busy ;)
Very cool, thank you for testing! If you find a really cool bypass, I will convert your license into a lifetime license ;). And what I mean by really cool bypass is ANY bypass when VS is ON, or any bypass slightly more malicious than spyware when VS is OFF or on AutoPilot ;).

And btw, I believe VS 6.76 is stable enough to test... so it's ready when you are ;).
 

danb

From VoodooShield
Thread author
Verified
Top Poster
Developer
Well-known
May 31, 2017
1,658

show-Zi

Level 36
Verified
Top Poster
Well-known
Jan 28, 2018
2,463
With the portable version of FireFox (beta) distributed on portableapps.com, a warning pops up every time you upgrade. VS recognizes it as a browser, so if you allow it, there is no problem with protection.
 

Shadowra

Level 33
Verified
Top Poster
Content Creator
Malware Tester
Well-known
Sep 2, 2021
2,287
Very cool, thank you for testing! If you find a really cool bypass, I will convert your license into a lifetime license ;). And what I mean by really cool bypass is ANY bypass when VS is ON, or any bypass slightly more malicious than spyware when VS is OFF or on AutoPilot ;).

And btw, I believe VS 6.76 is stable enough to test... so it's ready when you are ;).

Challenge accepted :cool:

You let me recode Origami entirely, I have a little idea :D
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top