Thank you for letting us know (btw. we base it on the legal owner of the website, not the company name in the EXE, but the legal entity on the website has changed too).
Posts made by Tom
RE: [Solved] WingetUI - Installed Version recommended
We've tweaked the detection, do let us know if it has improved.
RE: [Solved] Microsoft Edge WebView2 Runtime - Product-Page wrong
We've updated the links for Edge and Edge WebView2, thank you.
Edge WebView2 is a tad special, as there is different editions, some which are intended to be bundled with third party apps and then there is one which is system wide and can be shared by apps that need it.
The system wide one can be updated by simply running the latest installer, which is what we do, when you let VulnDetect update it.
The alternative is to let the built-in (Edge) updater update it.
Since many different applications use WebView2, it often takes time before it is updated (i.e. it often requires a system restart because important files are in use).
RE: [Corporate] Why do Ignore Rules expire?
@OLLI_S Good questions.
Most customers who requested this feature, want to periodically review the apps that they Ignored.
They are not deleted, they can simply be extended.
Yes, users do get an email stating that some Ignore rules will expire within X days.
On the Configuration page, there is a tab with Ignore rules, simply highlight X number of rules and click the Renew button, and they should be extended with another 90 days.
No, they all expire after 90 days by default.
Again, feedback is welcome on this feature, after you have used for a while. We are not certain that it is ideal, so we are open for suggestions once it has been used in "real life" for a while,
RE: [Solved] Skype for desktop 184.108.40.206 not considered as latest
Indeed, on the 10th November 220.127.116.11 was the default version available for download, since it appears it has been reverted.
Thank you for letting us know, we will let 18.104.22.168 remain recommended for a bit longer.
RE: New users, approvals and scammers
A quick follow up on this.
Yesterday, we conducted "The Purge", it involved deleting thousands of accounts, sadly we based this on IP addresses extrapolated from obvious SPAM/SCAM accounts. This clearly proved that a few specific countries known for underpaid labour and SPAM factories are central to this.
Thus, we have decided to implement IP based filtering. As crude and prejudiced as it may be, it is simply the easiest way to combat the majority of this frustrating and wasteful flooding.
If you have been impacted by this and have a legitimate interest in the site, please contact us by other means and we will help you restore access to the forum.
New users, approvals and scammers
Welcome to VulnDetect dot org, the forum for discussing SecTeer VulnDetect and related subjects.
Sadly, we have been flooded with SPAM and SCAM posts from simpleminded individuals, criminals and underpaid off-shore workers.
We have therefore started a crude campaign to delete a vast number of accounts and the posts they attempt to make.
Sadly, it appears that we occasionally delete a legitimate post or user. We apologize for that.
Doing a proper vetting of a single registration and post is simply too time consuming.
We have therefore changed the registration process, so first of all you have to answer a simple question, it appears to stop half of the simpleminded individuals who are tasked with spamming sites such as ours, the rest, that means both legitimate users and scammers with a bit of cognitive abilities has to wait for an admin to reject or accept their profile.
We will attempt to do this daily, but can't promise that it always will be done in a timely fashion.
Most users who should have access to this site either already have a connection to a user in our community or knows an employee who works here. If not, please do spend a few minutes on the forum or on the parent website, to find alternate contact information and send us a request to approve your profile and post.
We apologize for all this, but we want to ensure that this forum has a high degree of relevant posts, without boring scam posts about ED, travel advice, erotic services and similar totally irrelevant and probably fraudulent content.
Thank you for your patience and understanding!
RE: Things I would look for in a new vulnerability detection program posted in General Discussion
RE: vulndetect newcomer
@WacoJohn With regards to the "rejection", then I am deeply sorry if that happened. We have received an excessive amount of SCAM posts recently, so our purge might have been a tad excessive.
We did change the way we approve profiles instead, as we have thousands of "ghost" profiles.
To anyone else who gets rejected or "not-approved", please do not hesitate to contact us by other means, and we'll try to find you in the pile of fake profiles and SCAM posts and approve it.
RE: vulndetect newcomer
@WacoJohn Welcome to VulnDetect.
The Personal edition of VulnDetect only supports one Agent (installation / PC) per account (email).
I think this may be the reason for the confusion.
If you want to control 3 PC's, then I can give you a "Corporate" account, however, it is intended for a larger number of PC's than 3, so it may also not fit super well.
Our goal is to merge the Personal UI and the Corporate UI, so we get a more user friendly edition of the Corporate. However, I don't have any ETA on that project.
RE: [Solved] AnyDesk - Detected Version Incorrect
@OLLI_S It should be fixed upon next inspection, it is due to the way we show the version, when we don't have a "specific" version rule. We always add rules a few times a day, so this period should be brief in most cases.
RE: [Solved] Bundle "ColorCop" with "Screenshot Captor"
@OLLI_S And you got it today, so fast it can be...
I vaguely remember looking it ages ago, but I can't recall why I didn't complete it.
Anyway, it should be done, thank you for your patience
RE: Recuva Portable - Recommended Version not Available
@OLLI_S I will have to look deeper at this and find out with customers how prevalent this is and if it offers general value.
My initial point of view is that it often will be a duplication of these 450 or so apps that they support. And the issue is that I don't know if the issue we see with Speccy affects 1% or 99% of them. And for each that uses a different version, we would have to correlate the potentially unknown and unrelated version with the changelog from the original vendor.
For some that may be easy, but for Speccy I can't see how we can do it.
What you showed me with Speccy makes it a completely "new" and independent product, will PortableApps display e.g. security information (if that ever becomes relevant)?
RE: [Solved] Speccy Portable (PortableApps) - Not Detected (Bug)
Recuva is detected because the portable EXE file happens to match the same criteria as the original file, so avoiding to detect it as Recuve would be hard.
However, Speccy has a completely different filename, different properties and even a different version number, so tracking that is not trivial.
In general, any detection of portable apps isn't intentional, it is a coincidence, because the portable app, like Recuva, happens to have the same properties.
I can only encourage anyone who repackages apps as portable to do it the same way as the Recuva portable, it will ease the burden for all users of the portable app, and for us, to keep track of it.
RE: [Solved] BUG - List of Apps - Product Name Empty
@OLLI_S Once again thank you.
That bug and one other bug is now fixed. There may be a few more releases during the day, as we have some more tweaks and tunes in the pipeline.
RE: [Solved] BUG - List of Apps - Product Name Empty
That's not good.
Thank you for reporting this.
We did make a new release of both UI and backend just two hours before you posted this.
Sadly I checked it, using our UAT:
Here it works (I should not have used UAT for the sanity check).
So for you and anyone else who needs it in the early morning hours, then it is visible and functional in UAT.
I pinged the dev team, so this will be fixed first thing when they get online.
Note: You must change the URL after you logged in, else you won't see the UAT.
RE: PowerShell 7.x download page does not redirect to a download page
@GregAlexandre Thank you.
We've added this as the download link:
It's not ideal, but if you are on the 7.3.x channel, then you will mostly find it as the first.