Jump to content

Sampei.Nihira

Member
  • Posts

    1,270
  • Joined

  • Last visited

  • Days Won

    30
  • Donations

    0.00 USD 
  • Country

    Italy

Everything posted by Sampei.Nihira

  1. We need to compare the free version. Why would it be better? Use less RAM? This aspect would be very interesting for me. 4 accounts: P.S. Even if only for 30 days, I don't trust the partnership with WOT at all......... P.S.1 I did a quick test, with 0 accounts PopPeeper consumes more RAM than PopMan.
  2. I had to replace the usual email checker. I prefer light and portable software. I opted for PopMan: https://portableapps.com/apps/internet/popman_portable Available in multiple languages. In the enabled options, "Launch PopMan at Windows startup" to have the software available as an icon in the system tray. Now,you just have to enter your accounts.
  3. Disable the WebClient service = Works on all systems but won't mitigate the issue if you open a document with the vulnerable font class. DisableATMFD registry key manually = Only works on older (before Windows 10) but completely mitigates the issue though can introduce usability issues in rare cases. 1) Yes. 2) I leave this question to who is more competent than me.
  4. The 3D to which I refer is written and therefore it is evident in the second post of this same 3D.
  5. Those who have pop-up problems with the latest CCleaner build for Windows XP must add the following rule to the Host file:
  6. I don't understand why you didn't follow the easy way recommended by Microsoft. You can apply 2 Workarounds without having any problems, I personally have applied: 1) Disable the WebClient service. 2) DisableATMFD registry key manually. I also applied my other 2 personal mitigations listed in the specific 3D. So in total 4, and I have no problem.
  7. @XPHomeSP3 Mitjia has no interest in developing micro-patches for windows XP because it would not have a monetary return for the energies dedicated to this OS. Instead with Win.7 it is different because it is still used in companies. For CVE-2020-0938, CVE-2020-1020 vulnerabilities, the Microsoft recommended mitigations can be used. I personally use 2 mitigations without problems in addition I added 2 other personal mitigations that I mentioned in the dedicated 3D. For the CVE-2020-0674 vulnerability I adopted the strategy of blocking I.E.8 through an NVT OSArmor rule, more info in the dedicated 3D.
  8. No, it's not worth it. All vulnerabilities that interest you in 2020 have an Exploitability Index Works = 2 Additionally, none of these vulnerabilities are exploited. It could be interesting if 0-Patch also addressed for Win.XP OS with the resolution of the following vulnerabilities: CVE-2020-0938,CVE-2020-1020,CVE-2020-0674.
  9. Hi,did you perform a code fix or a rename of ATMFD.dll?
  10. In the absence of a Microsoft patch,other solutions may be considered. Mitja Kolsek and Didier Stevens also agree that: A 0-days vulnerability can be patched, not only by correcting the code, but by protecting the attack target (in the cases mentioned above 2 dll) of a possible remote exploit.
  11. An interesting zero impact software for our Windows XP that can resolve the vulnerabilities 0-days in the absence of Microsoft updates: https://excubits.com/content/en/products_bouncer.html The vulnerabilities to be solved would be these: https://msfn.org/board/topic/181242-cve-2020-0674-and-ie8/ https://msfn.org/board/topic/181352-microsoft-warns-of-hackers-abusing-windows-adobe-library-zero-days/ Example of mitigation of the vulnerability in I.E.8: https://excubits.com/content/en/news.html In the FAQ it is specified: If the software is interesting we could ask for the Windows XP demo version,then write the configuration file. For the next vulnerability, another line should be blacklisted: *>C:\Windows\System32\atmfd.dll In this 3D the configuration files of some users: https://www.wilderssecurity.com/threads/bouncer-previously-tuersteher-light.359127/page-75#post-2910396
  12. Yesterday's Microsoft patch resolved the CVE-2020-0938 and CVE-2020-1020 vulnerabilities for supported OSs. For W.7 there is 0Patch. For OS prior to W.7 only the mitigations described by Microsoft + my personal solutions.
  13. A little late today. Happy Easter, my friend, to you and your family. P.S. We,in Italy,are always locked in the house .....
  14. Thanks to 0patch we have some more info: https://blog.0patch.com/2020/03/micropatching-unknown-0days-in-windows.html I went to check the PFM files: "open with Windows Font Viewer" start - run - fonts - double click on a font and you will see the Windows font viewer. No type of PFB file on my PC. The MMM file type is considered a media file, and opened with Media Player. So I created a new type of PFB file that is opened with I.E.8 which in my pc is blocked by a Novirusthanks OSArmor rule: Also changed the type of PFM file with I.E.8. For now, the MMM file type remains unchanged.
  15. @RainyShadow It may be interesting for UBO users to block third-party remote fonts: If you want to allow third-party fonts for some specific sites you can add them by modifying the above filter: https://github.com/gorhill/uBlock/wiki/Per-site-switches#no-remote-fonts It would be interesting to discuss whether this option is effective or not.
  16. https://www.bleepingcomputer.com/news/security/microsoft-warns-of-hackers-abusing-windows-adobe-library-zero-days/ As you can see it also affects Windows XP: More info for mitigations: https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/ADV200006 I recommend users to disable WebClient service. Black Vipers also believes this service for Windows XP: which is therefore also disabled in the SAFE column: http://www.blackviper.com/service-configurations/black-vipers-windows-xp-x86-32-bit-service-pack-3-service-configurations/
  17. Check your version of Potplayer. Version 1.7.21149 replaces 1.7.21147: If you have the old version, you need to perform a new installation.
  18. It's all to be rewritten, especially for web browsers. But also CCleaner latest version 5.64.7577, Potplayer the latest new version 200317 (March 17, 2020)......etc......etc....
  19. Out PotPlayer v.200317 (March 17, 2020) http://potplayer.daum.net/?lang=en Attention to additional software:
  20. Out SumatraPDF 3.2. Even with the changes made with CFF Explorer version 3.2 seems not to work. The latest installable version is 3.1.2.
  21. The warning today manifested itself. I tried to block CCleaner.exe in the host file.
  22. It is better if I insert pictures of all the changes made. You must also close the icon in the bar.
  23. I use the portable version CCleaner 5.61.7392. 5.64.7577 has the same problems as the previous versions. Persistent bar CCleaner icon, non-erasable registry key, pop-up. If any MSFN user finds the remedies for this I would be happy to use it Edit Done. Just act a little in the setting. I also inserted my old winapp2.ini file for cleaning Interlink Mail New, New Moon 28 which is recognized as Firefox, Potplayer and MBAE. I insert some pictures. Start: New Moon28 which is recognized as Firefox with my custom cleaning rules: Interlink Mail New + Potplayer + MBAE:
×
×
  • Create New...