Welcome, Guest. Please login or register.
November 30, 2009, 03:03:13 PM

Login with username, password and session length

338831 Posts
37503 Topics
85108 Members

Latest Member: spriggig

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Learn about Computer Security and Interact with Security Experts
| |-+  Anti Virus/Malware Products/Other Security products
| | |-+  Drive Sentry [merged thread]
« previous next »
Pages: 1 [2] 3 4 ... 8 Go Down Print
Author Topic: Drive Sentry [merged thread]  (Read 40884 times)
doktornotor
Comodo's Hero
*****
Offline Offline

Posts: 218


« Reply #15 on: August 17, 2008, 02:12:14 PM »

Quite complex product. I'd suggest reading this Wilders Security thread to get a better idea on how it works.  Idea
Logged
Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3156



WWW
« Reply #16 on: August 20, 2008, 05:02:28 AM »

I'm testing it out - looks good.

EDIT::  They are discussing DS at wilders, with one of their staff members.
http://www.wilderssecurity.com/showthread.php?t=209764
« Last Edit: August 20, 2008, 05:05:30 AM by Kyle » Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
panic
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 7528


... and I say to myself, "What a wonderful world"


« Reply #17 on: August 20, 2008, 06:12:46 AM »

They must be using the phrase "data firewall" as meaning "a firewall for the data that exists on your system and what can or cannot access it". DriveSentry is a great product, but it is really just a whitelist based HIPS. A bloody good one, but nothing more than that.

I've tested the last couple of revisions and there is no traffic monitoring, just application layer monitoring.

Just like J-Lo, nice HIPS.

Ewen :-)
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3156



WWW
« Reply #18 on: August 20, 2008, 06:45:17 AM »

Thanks ewen,

It kinda looks like Comodo is heading towards what drivesentry is doing?

White listing, Black listing, HIPS and an advisor (Will give information on what users before you have selected if the program is unknown) -
Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
hyatt69
Comodo Loves me
****
Offline Offline

Posts: 194



« Reply #19 on: August 20, 2008, 07:55:55 AM »

i like the advisor part of drivesentry,looks like thats what threatcast will do for comodo that will be a great addition i think
Logged
Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3156



WWW
« Reply #20 on: August 20, 2008, 02:25:07 PM »

Yeah and Also, It does not conflict with D+ at all!  It's like having 2 opinions
Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
salmonela
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 494


COMODO Volunteer DEModerator


« Reply #21 on: August 20, 2008, 03:24:55 PM »

This thread should go to HIPS section (data firewal≈HIPS, data firewall≠personal firewall) Wink
« Last Edit: August 20, 2008, 03:31:30 PM by salmonela » Logged

XP Pro SP3, Pentium4-3Ghz, 4×512Mb DDR, Ralink RT61 WLAN PCI adapter, ZyXEL P-660HW-D3 WLAN Router DSL modem
Bad English, I know...
Thanks
PLEASE DO NOT REPLY DUMB QUESTIONS/ANSWERS
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 6482


Why not ? The choice is yours !


« Reply #22 on: August 20, 2008, 03:34:17 PM »

*Zucht* were is ganda when we need him  Grin... I'll move it then, I was waiting some time after Panic said it was a HIPS, but I was waiting for Ganda as he moved already half of the forums  Tongue

Xan
Logged

salmonela
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 494


COMODO Volunteer DEModerator


« Reply #23 on: August 20, 2008, 03:40:59 PM »

*Zucht* were is ganda when we need him  Grin... I'll move it then, I was waiting some time after Panic said it was a HIPS, but I was waiting for Ganda as he moved already half of the forums  Tongue

Xan
Off-Topic!
so Ganda is moving force of forum
Josh is "locksmith"
and you are corrector Laugh
 Off-Topic! ends
« Last Edit: August 20, 2008, 03:43:14 PM by salmonela » Logged

XP Pro SP3, Pentium4-3Ghz, 4×512Mb DDR, Ralink RT61 WLAN PCI adapter, ZyXEL P-660HW-D3 WLAN Router DSL modem
Bad English, I know...
Thanks
PLEASE DO NOT REPLY DUMB QUESTIONS/ANSWERS
eXPerience
Malware Researcher Virus Removal Helper Advanced Tweak Freak Crazy Little Devil
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 6482


Why not ? The choice is yours !


« Reply #24 on: August 20, 2008, 03:49:19 PM »

Yeah, and normally I should split this  Cool, but as I'm tired... I leave it like that, I don't think it will do any damage..

Back to Drivesentry now, I like this software. More and more developers are going to whitelisting instead of the blacklisting first  Clapping. Haven't tested it yet, but I'll try later  Wink.

Xan
Logged

Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3156



WWW
« Reply #25 on: August 20, 2008, 11:41:51 PM »

no!! what are you doing!? This is an anti virus.
Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
ganda
ninja
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5553


temporary avatar


« Reply #26 on: August 21, 2008, 12:06:32 AM »

no!! what are you doing!? This is an anti virus.
wow, what a mysterious thing is this drivesentry Huh it is a firewall/antivirus/HIPS Huh
maybe it's an antivirus with whitelisting approach   Nerd (i am so KEWL  Afro )
maybe similar to CAVS 2 Huh
i'll give it a try  Tongue

Yeah and Also, It does not conflict with D+ at all!  It's like having 2 opinions
are you sure? Huh ....... is ammee sure?  Grin coz i plan to replace avast with this (coz the site looks cool  Laugh ) . but maybe i'll switch off the HIPS part if there's any option to do that.

edit:
installed! it's now synchronizing to its advisor database. the installer only 1,7MB Huh

you guys definitely have to try it! coz i'm definitely in love with katie  Love  Kiss Kiss
http://www.wilderssecurity.com/showthread.php?t=209764

1) no conflict with current AV, (ouch i've removed avast  Cry)
DriveSentry is currently compatible with the majority of third party AV products and will remain this way. This gives people the option to use DriveSentry as a standalone security solution or as an extra layer of defence alongside their existing security software.


2) similar to threatfire
DriveSentry has similar technology to that of ThreatFire because we monitor how a process appears and what its intentions are. This heuristic/ behavioural technology kicks in if the program attempting to access your system is not within our white or blacklist. DriveSentry does not just monitor access to the drives although this is how the name portrays it! DriveSentry actually monitors memory and registry access too!

the site says it's an AV.i removed avast, now if i wanna keep it, looks like i have to turn off Defense+ Angry

hmmmm, katie or kim?  Roll Eyes




« Last Edit: August 21, 2008, 12:48:27 AM by Ganda » Logged

word of wisdom: do not do to others what you would not like to be done to you unless you have a rocket launcher
panic
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 7528


... and I say to myself, "What a wonderful world"


« Reply #27 on: August 21, 2008, 02:58:13 AM »

coz i'm definitely in love with katie  Love  Kiss Kiss

No fair! I calloed shotgun on Katie first!!  Angry Love
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
Kyle
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 3156



WWW
« Reply #28 on: August 21, 2008, 03:10:33 AM »

Hey Ganda! It should be ok, It's compatible with D+.
Logged

E5200 2.5ghz [at] 3.2ghz, POV 9800gt 512mb, 2gb DDR2 RAM.  500gb. HDD

DUAL BOOT: 
Linux Mint - Everything.
Win XP - Only when needed.
Rafel
Product Translator
Comodo's Hero
*****
Offline Offline

Posts: 355


I use only the best, I use Comodo firewall


« Reply #29 on: August 21, 2008, 04:20:51 AM »

I tested some times ago in a Virtual Machine:
-Nice idea, with white list and black list.
-I dom't know if it's compatible, but i think maybe it's compatible, because this AV has not the same kind of HIPS.
-It's light in system resources.
But:
-No shell extension, and then, you can "analize" a file, a folder,etc.
-Not recognized by security center.
For now, while i'm waiting CAVS 3 for testing, i prefer AVAST, CBOClean and HIPS by D+ of CPW.
Logged

Tags:
Pages: 1 [2] 3 4 ... 8 Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.112 seconds with 17 queries.
Powered by SMF 1.1.10 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com