Spydex.com

Jul 4th, 2008, 6:28am
   Spydex, Inc. Forum
   Spydex Software
   Advanced Anti Keylogger
(Moderator: Eric)
   How do I decide?
« Previous topic | Next topic »
Pages: 1  Reply Reply Notify of replies Notify of replies Print Print
   Author  Topic: How do I decide?  (Read 699 times)
wumply
Spydex, Inc. Forum Newbie
*





   
Email

Posts: 8
How do I decide?
« on: Sep 24th, 2006, 7:29pm »
Quote Quote Modify Modify

I know there are lot of files/programs here I am asking about.  Please just give me whatever help you feel you wish to.   If you can tell me per each listing, that would be helpful but you may prefer to generalize.
                     These are the programs that AAK has asked me about as I have used my computer.  And I am unclear as to whether I should allow the always or even only upon notification when they attempt to do what AAK alerts me to.  I mean most of them at least seem to me “not out to get me”.   Surely I should allow my anti-virus free rein fulltime (Avast) and certainly be as liberal with my firewall…(Sygate).  And is there harm in letting Windows Explorer free rein or Windows Media Player?  But what about the others?   .exe’s for example?  I know I can get a bit of info sometimes about these files from “file extensions” site online or from other sites—and they “might” encompass a virus.  So I suppose you just play it say and don’t allow them.  But might they not be necessary for some program to do something you want to happen?
 
Can you give me your input on these programs—allow or allow only per each request.  Or prohibit.  How does one know?  
 
Ati (or ATI) is necessary for my video card to work.)
 
Here’s what AAK is currently showing.  All program/files currently have “allowed” re current status and all have “always allow” under Rules.
 
C:\Program Files\Sygate\SPF\smc.exe
    c:\WINDOWS\system32\SSSensor.dll  
 
C:\WINDOWS\system32\clfmon.exe
    c:\FWINDOWS\system32\MSCTF.dll
 
C:\WINDOWS\system32\Ati2evxx.exe
     c:\WINDOWS\system32\ati2evxx.dll
 
C:\WINDOWS\Explorer.EXE
     c:\FFWINDOWS\explorer.exe
 
Screenshot Capture Programs:
 
c:\Program Files\AlwilSoftware\Avast4\ashSimpl.exe
c:\Program Files\Common Files\InstallShield\engine\...
c:\Program Files\ScanWizard5\ScanWizard…
c:\Program Files\Mozilla Firefox\firefox.exe
c:\Program FilesSygate\SPF\Smc.exe
c:\WINDOWS\sysstem32\shlwapi.dll
c:\windows\temp\_ins5176_mp
IP Logged
Eric
Spydex, Inc. Forum Moderator
Spydex, Inc. Forum Senior Member
*****






   
WWW

Posts: 258
Re: How do I decide?
« Reply #1 on: Sep 25th, 2006, 3:41am »
Quote Quote Modify Modify

For your information: Whereas High Security Mode is level of maximum protection of you computer there is possibility of little discomfort during some applications use. Together with protection against any spy software Advanced Anti Keylogger has little influence on features of some applications connected with keyboard like hot-key combinations and others. That is why Custom Security Mode was developed. Custom Security Mode allows experienced computer users to avoid discomfort from above Advanced Anti Keylogger influence. Using configurable set of rules experienced user can allow operation of keyboard features for well-known applications and prohibit operation of others needless or unknown. In any case Custom Security Mode could be used with high caution.
 
So, at first, you can try to switch Advanced Anti keylogger to the High Security Mode (i.e. set prohibited rule for all your applications), reboot computer and then test your alerted applications (avast, firewall and so on). If applications will work as you need, you can assign prohibited rules for those applications in the Custom Security Mode as well.
 
Otherwise you have to follow next common steps for each questionable application:
 
Common steps:
------------------
 
Prohibited rule -> Reboot computer -> Test application
 
and if:
 
Test is OK -> leave the Prohibited rule
Test is False -> set the Allowing rule
 
Our suggestions concerning your questionable applications:
 
C:\Program Files\Sygate\SPF\smc.exe
   c:\WINDOWS\system32\SSSensor.dll  
 
Common steps
 
 
C:\WINDOWS\system32\clfmon.exe
   c:\FWINDOWS\system32\MSCTF.dll
 
Allowed - this is Windows system application predefined as allowed in AAK by default.
 
 
C:\WINDOWS\system32\Ati2evxx.exe
     c:\WINDOWS\system32\ati2evxx.dll
 
Common steps.  
 
 
C:\WINDOWS\Explorer.EXE
     c:\FFWINDOWS\explorer.exe  
 
Common steps.  
 
Your Screenshot Capture Programs:  
 
Prohibited rule for all.
IP Logged

Eric Nilsson
Spydex Inc.
Security Software Developer
---------------------------
http://www.spydex.com
wumply
Spydex, Inc. Forum Newbie
*





   
Email

Posts: 8
Re: How do I decide?
« Reply #2 on: Sep 25th, 2006, 7:38am »
Quote Quote Modify Modify

Eric, thanks for your response.  I shall take its advice.
 
But there is something I don't understand.  You recommended preventing all screenshot captures. Well my anti-virus program captures screenshots.   So does my firewall.  My scanner software does screen captures.  And so does my browser, Fireefox.
 
These programs could hardly be out to make off with information I would not want others to have access to, so why is it advisable to prevent their capturing screenshots.
IP Logged
Eric
Spydex, Inc. Forum Moderator
Spydex, Inc. Forum Senior Member
*****






   
WWW

Posts: 258
Re: How do I decide?
« Reply #3 on: Sep 26th, 2006, 7:02am »
Quote Quote Modify Modify

Screenshot capture feature can be prohibited for the most of applications including your scanner software (actually it has to scan  your paper imagines  but not your desktop imagines). If some of those applications are well known for you but not operates as you need you can allow screenshot capture feature for them.
IP Logged

Eric Nilsson
Spydex Inc.
Security Software Developer
---------------------------
http://www.spydex.com
wumply
Spydex, Inc. Forum Newbie
*





   
Email

Posts: 8
Re: How do I decide?
« Reply #4 on: Sep 26th, 2006, 9:14am »
Quote Quote Modify Modify

Well, that answers that, Eric.  Thanks.  John Smiley
IP Logged
Pages: 1  Reply Reply Notify of replies Notify of replies Print Print

« Previous topic | Next topic »