GUARDIAN.CMD
creates empty files
‹filename›.EXE
next to some or all
subdirectories which contain a space in their name it finds in the
root directory of Windows’ system drive
%SystemDrive%\
, underneath the directories
%SystemRoot%\
,
"%ProgramFiles%\"
and (if it exists)
"%ProgramFiles(x86)%\"
as well as
"%USERPROFILE%\"
to let execution of these
DLLs
and applications due to the well-known weaknesses listed as
CWE-426: Untrusted Search Path,
CWE-427: Uncontrolled Search Path Element
and
CWE-428: Unquoted Search Path or Element
in the
CWE™
fail.
GUARDIAN.CMD
is packaged in the (compressed and
digitally signed)
cabinet
file
GUARDIAN.CAB
.
GUARDIAN.CAB
is
digitally signed
using an
X.509
certificate
issued by
WEB.DE TrustCenter E-Mail Certification Authority.
-----BEGIN RSA PUBLIC KEY-----
MIIBCgKCAQEAwoDvctTIkyz5KyHlms35ue9lm7I2yPVqZbRjGL26OKxei/R9APYKA47yoJQu
QZvr0husZPI/XQEGDicmBH1Gw/T821Y/E3pwUrumhw2dRI83Vn3wqO1OaAfkcOxjtNthr04r
YT+8f1SJtZabDP0Fv7dF4ltrUSwvy+lxV4jLLU2y7qtJ6XawLHEIBZAurozEGUVlgF93nsIZ
ydcHLxQzUEbSSsegkeY+aaaC/pGFE9Q3P3c4Nn5kOwK8ElwPwbHFMiK4t8RT3DSPXX0XQl2M
yoB3XAhZj6VOC9JyHC4COVSTnbFz3mmDkxYL/qyKFkDH/V5JWZhEv+T0Rl2Bebh91wIDAQAB
-----END RSA PUBLIC KEY-----
Download and install the
CA
and
root
X.509 certificates of
WEB.DE
to validate and verify the digital signature.
Note: unfortunately WEB.DE abandoned their trust center in 2018 and removed all pages and download links in 2019; fortunately the Wayback Machine archived the TrustCenter page, the CA and the root certificate.
Note: due to its counter signature alias timestamp the digital signature remains valid past the X.509 certificates expiration date!
GUARDIAN.CAB
and verify its digital signature, then open it in
Windows Explorer, extract its
contents and call the extracted batch script
GUARDIAN.CMD
to run the installation.
Use the X.509 certificate to send S/MIME encrypted mail.
Note: email in weird format and without a proper sender name is likely to be discarded!
I dislike
HTML (and even
weirder formats too) in email, I prefer to receive plain text.
I also expect to see your full (real) name as sender, not your
nickname.
I abhor top posts and expect inline quotes in replies.
as iswithout any warranty, neither express nor implied.
cookiesin the web browser.
The web service is operated and provided by
Telekom Deutschland GmbH The web service provider stores a session cookie
in the web
browser and records every visit of this web site with the following
data in an access log on their server(s):