Welcome, Guest. Please login or register.
Did you miss your activation email?
May 23, 2013, 04:31:07 PM

Login with username, password and session length

663806 Posts
70589 Topics
145226 Members

Latest Member: oldwiseowls

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Learn about Computer Security and Interact with Security Experts
| |-+  Leak Testing/Attacks/Vulnerability Research
| | |-+  weakness of the gpCode
« previous next »
Pages: 1 ... 8 9 [10] Go Down Print
Author Topic: weakness of the gpCode  (Read 77103 times)
Ronny
Product Translator
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 13182


Volunteer Moderator


« Reply #135 on: May 13, 2011, 09:27:13 AM »

Will I create a File Group for this? How can I create that...I am at a loss (Protected Files and Folders/Add then what..? Or Group/Add New Group/..then...?)
Go to Defense+, Computer Security Policy, Protected Files & Folders.
Press 'Groups' and Add, A new group. Give it some name, Scroll to the bottom of the policy there you can find the new group, select it and right click, then Add the lines one by one.

*.txt|
*.chm|
*.jpg|
*.7z|

And which ever extension more you wish to protect e.g. *.doc, *.xls etc...

Press Apply, now IMPORTANT !! Add 'File groups' And select the group you just created.
Make sure it's added to the 'Protected files and folders' tab and looks 'grayed out' then it's active after the next Apply.

Same procedure for \Device\KsecDD
Logged

Volunteer Moderator
Any concerns? Please send me a PM or review the Forum Policy -  update Jan 3rd 2013!
aigle
Comodo's Hero
*****
Offline Offline

Posts: 673



« Reply #136 on: May 13, 2011, 10:18:11 AM »

Or you can just wait for the next major version.

And if you don,t use sandbox in next version, wait for version 10 of Comodo Defence Plus that will deal with this behavior of gpcode.  Thumb Down Thumb Down
Logged

voltron
Comodo Family Member
***
Offline Offline

Posts: 82



« Reply #137 on: May 14, 2011, 03:57:21 PM »

Thanks.
Logged
morphiusz
Star Group
Comodo's Hero
*****
Online Online

Posts: 2197


Comodo's śmieć :)


WWW
« Reply #138 on: June 04, 2011, 02:43:51 PM »

http://blogs.comodo.com/category/pc-security/file-protection/

I want only to remind you Melih, that Gpcode and blackday are truly 'file attackers' Smiley.


« Last Edit: June 09, 2011, 08:53:14 AM by morphiusz » Logged
morphiusz
Star Group
Comodo's Hero
*****
Online Online

Posts: 2197


Comodo's śmieć :)


WWW
« Reply #139 on: June 09, 2011, 08:51:59 AM »

http://www.virustotal.com/file-scan/report.html?id=06e921abf28c4b260c59d61d84a74c3a5dc12ac99a34110ca5480ce61689385c-1307140206

http://www.virustotal.com/file-scan/report.html?id=832863ece8c7eced9395b8929b1557297feab33f8912210e8ff870ed849baab2-1307050715

2 new variants of Gpcode!!
Thanks to God that they are detected.
WE are waiting for D+'s fix.
« Last Edit: June 09, 2011, 09:06:34 AM by morphiusz » Logged
Siketa
Comodo's Hero
*****
Offline Offline

Posts: 3156


ZIG ZAG


« Reply #140 on: June 14, 2011, 08:00:33 AM »


There is a fix already available......set "Treat unrecognized files as..." to Blocked..... Wink
Logged
aigle
Comodo's Hero
*****
Offline Offline

Posts: 673



« Reply #141 on: August 19, 2011, 04:58:47 PM »

A lame fix indeed.
Logged

wasgij6
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3061



WWW
« Reply #142 on: August 19, 2011, 05:11:02 PM »


idk if you still have the samples but im curious to what valkyrie says about them
Logged

| Win 7 Ultimate (x32) SP1; Admin | UAC Disabled | CIS 6.1.276867.2813 | CD 26.2 | CID 20.0.1 | VMWare Workstation; XP (x32), 7 (x64) |
SivaSuresh
Star Group
Comodo's Hero
*****
Offline Offline

Posts: 1336


Avert the danger that has not yet come


« Reply #143 on: March 21, 2013, 09:36:32 AM »

Any progress so far ?
Logged

with love Siva Suresh
|| Windows8 x64 | CIS 6 | Waterfox | Comodo Dragon x86 | Thunderbird | CCleaner | Evernote | PStart | SuperCopier | Dropbox | TeamViewer | Screenshot Captor ||
|| AMD Phenom II x4 955B | ASUS M4A88TD | 8GB DDR3 RAM | 240GB Sandisk SSD  || 3TB SATA II HDD 6Gb/s
wasgij6
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3061



WWW
« Reply #144 on: March 21, 2013, 11:05:46 AM »

Any progress so far ?

Yes
with v6 the autosandbox in limited and above can block it, HIPS can now block it, the only one that cannot is partially limited and egemen said this was the expected behavior.
Logged

| Win 7 Ultimate (x32) SP1; Admin | UAC Disabled | CIS 6.1.276867.2813 | CD 26.2 | CID 20.0.1 | VMWare Workstation; XP (x32), 7 (x64) |
Tags:
Pages: 1 ... 8 9 [10] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.048 seconds with 21 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com