• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Download VulnDetect Installer
  • Login
SecTeer VulnDetect & PatchPro Support Forum VulnDetect
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Download VulnDetect Installer
  • Login

[Added] Discord - App-Request

Scheduled Pinned Locked Moved Added App Requests
8 Posts 3 Posters 1.6k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • A Offline
    Anselm
    last edited by OLLI_S 17 Dec 2018, 21:02

    File name and path:     C:\Users\ad\AppData\Local\Discord\app-0.0.301\Discord.exe
    Product Name:           Discord
    Internal Name:          Discord.exe
    Original Filename:      Discord.exe
    
    File Description:       Discord
    Company:                Discord Inc.
    Legal Copyright:        Copyright (c) 2017 Discord Inc. All rights reserved.
    Legal Trademarks:       
    Comments:               
    
    File Version String:    0.0.301
    File Version:           0.0.45.0
    Product Version String: 0.0.301
    Product Version:        0.0.45.0
    
    File name and path:     C:\Users\ad\AppData\Local\Discord\Update.exe
    Product Name:           Update
    Internal Name:          Update.exe
    Original Filename:      Update.exe
    
    File Description:       Update
    Company:                GitHub
    Legal Copyright:        Copyright © GitHub 2013-2015
    Legal Trademarks:       
    Comments:               Update
    
    File Version String:    1.1.1.0
    File Version:           1.1.1.0
    Product Version String: 1.1.1.0
    Product Version:        1.1.1.0
    

    Download:
    https://discordapp.com/download

    Gui Version: NA
    Showing version using this: https://www.reddit.com/r/discordapp/comments/84njqu/discord_current_version/
    [BUILD INFO] Release Channel: stable, Build Number: 29800, Version Hash: 49ebc1991deb74e88bb74e4ff75fce76cb32a4af

    Icon:
    discord.exe..ico

    1 Reply Last reply Reply Quote 2
    • T Offline
      Tom VulnDetect Team Member
      last edited by 18 Dec 2018, 04:45

      Another interesting case.

      We have to rely on the executable and display that version. The executable loads a UI / JavaScript from their web service. This is what you can see when you do the CTRL+SHIFT+I.

      Generic detection has been added for the binary. Specific Rules will be added later.

      /Tom
      Download the latest SecTeer VulnDetect agent here:
      https://vulndetect.com/dl/secteerSetup.exe

      1 Reply Last reply Reply Quote 0
      • O Offline
        OLLI_S Community Moderator
        last edited by 18 Dec 2018, 21:38

        I received an update of Discord but the version number of the EXE is still the same.
        So they really made it hard to get the version info.

        T 1 Reply Last reply 19 Dec 2018, 11:22 Reply Quote 0
        • T Offline
          Tom VulnDetect Team Member @OLLI_S
          last edited by 19 Dec 2018, 11:22

          @OLLI_S True, see my previous comment. Nothing we can do about that.

          /Tom
          Download the latest SecTeer VulnDetect agent here:
          https://vulndetect.com/dl/secteerSetup.exe

          1 Reply Last reply Reply Quote 0
          • O Offline
            OLLI_S Community Moderator
            last edited by OLLI_S 6 Feb 2020, 19:55 2 Jun 2020, 19:55

            Discord is currently detected by VulnDetect, the detected version number is 0.0.306.0.
            Inside the App I see the following data:

            a1d38394-802f-4ca4-9c6a-509ba41402cd-image.png

            Here the data as text:

            Stable 61002 (e9bbf75)
            Host 0.0.306

            So VulnDetect displays the Host version number.
            I don't know where to get the other version from.

            @Tom How should we proceed?

            1 Reply Last reply Reply Quote 0
            • O Offline
              OLLI_S Community Moderator
              last edited by OLLI_S 14 Jun 2020, 13:45

              I looked up the version number today and saw that the Stable Version changed and the Host version is constant

              ea46e970-aed0-4c55-8e57-2272585ad163-image.png


              Here the version info from the current EXE:

              File name and path:     C:\Users\olive\AppData\Local\Discord\app-0.0.306\Discord.exe
              Product Name:           Discord
              Internal Name:          Discord.exe
              Original Filename:      Discord.exe
              
              File Description:       Discord
              Company:                Discord Inc.
              Legal Copyright:        Copyright (c) 2018 Discord Inc. All rights reserved.
              Legal Trademarks:       
              Comments:               
              
              File Version String:    0.0.306
              File Version:           0.0.306.0
              Product Version String: 0.0.306
              Product Version:        0.0.306.0
              
              1 Reply Last reply Reply Quote 0
              • T Offline
                Tom VulnDetect Team Member
                last edited by 14 Jun 2020, 14:15

                I think there is one version of the exe and then there is another version of the UI, which is loaded dynamically from the Discord backend.

                I don't think it is feasible to track the version of the UI, since it appears to be a web app.

                /Tom
                Download the latest SecTeer VulnDetect agent here:
                https://vulndetect.com/dl/secteerSetup.exe

                1 Reply Last reply Reply Quote 0
                • O Offline
                  OLLI_S Community Moderator
                  last edited by 14 Jun 2020, 14:52

                  OK, then I mark this issue as added.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Download SecTeer Personal VulnDetect - an alternative to the long lost Secunia PSI

                  Please see our Privacy and Data Processing Policy
                  Sponsored and operated by SecTeer | VulnDetect is a replacement for the EoL Secunia PSI
                  Forum software by NodeBB