Hi,
Alert dialog finished, here is some snapshots:
It is small window that will be displayed with a Always-On-Top property, but if the client GUI was not loaded yet (e.g before user login) then the old alert window will be displayed by NG service.
With this dialog I've tried to make it easier for users to configure their executables and rules with just a few clicks.
Send your suggestion/ideas.
Thanks
Thursday, April 12, 2007
Monday, March 12, 2007
events tab
Here is a snapshot from events tab of new GUI. It is not complete yet.
("More options" is not shown cause i'm still working on it, it should display details about the selected event.)
This snapshot shows a log from NG protection against spt.exe, NG protects against all kind of attacks. APT tool by diamondcs is also completely covered in the new NG version, so NG will provide the same kind of defense against process termination as ProcessGuard.
Note that window is horizontally resizable, so user can see all columns without scrolling.
Please feel free to send your suggestions to me.
("More options" is not shown cause i'm still working on it, it should display details about the selected event.)This snapshot shows a log from NG protection against spt.exe, NG protects against all kind of attacks. APT tool by diamondcs is also completely covered in the new NG version, so NG will provide the same kind of defense against process termination as ProcessGuard.
Note that window is horizontally resizable, so user can see all columns without scrolling.
Please feel free to send your suggestions to me.
suggestions
Thanks to MaB69 for his suggestions, here is answers which may help other people learn about NG.
Maintenance task to delete rules related to non existant executables
the non-existent executables will stay in database but not shown for configuration, this way the application permissions will be available if the same executable executed again.
Self protection for the service and in case of attack, the service could relaunch the UI process
In the new NG UI will be shown by client (executed as user login) and it is protected against termination.
Hidden files/process detection
It is something which will be done by root-kits after they load into kernel, althought it is possible to detect hidden files/process in some cases but it is not possible to control a kernel-mode driver as it already had the highest possible access to system.
More Registry keys monitoring ( like IE settings or system settings (regedit actived/disabled))
It is easy to add more keys but currently the work is just too much for me. Thanks it will be in future versions.
Keylogging detection (GetKeyState, GetAsyncKeyState and DirectX request interception)
New NG protects against all kind of keylogging except DirectX, which till now I was unable to find a way to filter it. If anyone knows any technical details about inner work of this function contact me.
Maintenance task to delete rules related to non existant executables
the non-existent executables will stay in database but not shown for configuration, this way the application permissions will be available if the same executable executed again.
Self protection for the service and in case of attack, the service could relaunch the UI process
In the new NG UI will be shown by client (executed as user login) and it is protected against termination.
Hidden files/process detection
It is something which will be done by root-kits after they load into kernel, althought it is possible to detect hidden files/process in some cases but it is not possible to control a kernel-mode driver as it already had the highest possible access to system.
More Registry keys monitoring ( like IE settings or system settings (regedit actived/disabled))
It is easy to add more keys but currently the work is just too much for me. Thanks it will be in future versions.
Keylogging detection (GetKeyState, GetAsyncKeyState and DirectX request interception)
New NG protects against all kind of keylogging except DirectX, which till now I was unable to find a way to filter it. If anyone knows any technical details about inner work of this function contact me.
Sunday, February 25, 2007
Look at the new version
Friday, January 19, 2007
News
Neoava.com is up and running, everything is OK!
The news is that the new version of Neoava Guard will have some amazingly innovative stuff which make the this HIPS unique in ease of use among other HIPS.
Against the last two beta's which focused on just protecting against more attack ways, this time features added to comfort beginner users, and also provide a highly flexible configuration for advanced users.
In previous versions most users can't find a lot of configs etc.., but in next version everything can be configured from several places, the new interface allow users to change options/rules by few clicks.
4 completely new concepts added to increase ease of use, integration to system and installed programs, Internet attacks protection and overall protection. This completely new features allow NG to minimize alerts and most things automatically done (although can be configured not to be done automatically).
There will be a little visual tutorial along with NG next version to help people just know how to protect their computer using NG.
I will publish the new beta version to public and will update it every 2 weeks or so until no more bugs reported. Then the first non-beta version will be released.
I estimate the new beta to be ready for public release around mid March.
This time I promise the new version can make it as the best HIPS available on net, not only among the free ones but also others.
I will just keep it free, not to help people protect their computers (which will be done anyways) but to show how powerful Neoava Guard is and how creative I am in programming.
Just wait and see, cuz u aint seen nothin yet!
The news is that the new version of Neoava Guard will have some amazingly innovative stuff which make the this HIPS unique in ease of use among other HIPS.
Against the last two beta's which focused on just protecting against more attack ways, this time features added to comfort beginner users, and also provide a highly flexible configuration for advanced users.
In previous versions most users can't find a lot of configs etc.., but in next version everything can be configured from several places, the new interface allow users to change options/rules by few clicks.
4 completely new concepts added to increase ease of use, integration to system and installed programs, Internet attacks protection and overall protection. This completely new features allow NG to minimize alerts and most things automatically done (although can be configured not to be done automatically).
There will be a little visual tutorial along with NG next version to help people just know how to protect their computer using NG.
I will publish the new beta version to public and will update it every 2 weeks or so until no more bugs reported. Then the first non-beta version will be released.
I estimate the new beta to be ready for public release around mid March.
This time I promise the new version can make it as the best HIPS available on net, not only among the free ones but also others.
I will just keep it free, not to help people protect their computers (which will be done anyways) but to show how powerful Neoava Guard is and how creative I am in programming.
Just wait and see, cuz u aint seen nothin yet!
Subscribe to:
Posts (Atom)


