PDA

View Full Version : ByteHero Unknown-virus Detection Software


CiX
June 1st, 2010, 10:11 AM
Anyone tried ByteHero (BDV)? It's a free standalone BB scanner (like Threatfire)
Download Page
http://www.bytehero.com/english.asp

AvinashR
June 1st, 2010, 10:30 AM
-{ Quote: "Anyone tried ByteHero (BDV)? It's a free standalone BB scanner (like Threatfire)
Download Page
http://www.bytehero.com/english.asp" }-

Chinese Vendor ? :(

Ibrad
June 1st, 2010, 10:32 AM
It was discussed in the past, many AV vendors detect the ByteHero files because it was packed with Thermida (I think that's how you spell it) no one ever installed it so no one tested it.

Franklin
June 1st, 2010, 10:52 AM
Tried it against a microjoin exploit where it only detected 2 of 14 dropped exploits but also flagged three legit files.

Passing.

sg09
June 1st, 2010, 11:26 AM
Testing right now. Nothing to tell as the system is clean.

218517

218518

218519

CloneRanger
June 1st, 2010, 10:05 PM
ByteHero Unknown-virus Detection Software(BDV)

No install :thumb: and updated

218534

FP's from Prevx and VT due to Thermidia ;D

218535

218536

Like the options to select Dynamic and/or Static code analysis :thumb:

218537

Detected Normandy.sys in 8 secs which is part of MBRguard by Blue Ridge Networks i've installed. This is a FP, but i think it's a useful detect actually, because it shows that some MBR manipulation etc has taken place, and if it wasn't legit as in this case, it could be very dodgy indeed. I continued the scan and it detected lots of other FP's which were unusual files such as ARK's etc, but NO OS etc files. The fact that it picks up on irregular files, even though in my case they are FP's, could be useful in detecting real malware in the right hands.

So it would be easy to dismiss it on the grounds of FP's, but i wouldn't overlook it in possibly helping to detect out of the norm files for further investigation.

Next post

CloneRanger
June 1st, 2010, 10:08 PM
If you click on Download BSD

218541

You get to http://www.bytehero.com/bsd.asp

218539

Google translation

218540

Several shield apps listed

Golden Shield - ByteHero System Defense Software(BSD - Sharp Shield - Rui Shield

I'm not sure what these are, or how they differ ? I have a feeling they are maybe an AV/Hips etc ? Anyway i couldn't see any english versions of them !