Thread: Prevx2
View Single Post
  #40  
Old May 15th, 2007, 03:21 PM
fcukdat's Avatar
fcukdat fcukdat is offline
Malware Researcher
 
Join Date: Feb 2005
Location: England,UK
Posts: 566
Default Re: Prevx2

Fao EraserHW/Notok

A few questions with reguards the software capabilities but first off i have to express my approval of the blacklist/whitelist combo.Its the way to go when/if coupled up with raw disk reading under the hood

Does the new PrevX engine have the advanced capability to do what the PrevX Gromozon removal tool does very well....in short can it bust Rustock B(or Gromozon) if it is already loaded onto a system ?

How does it fare against Haxdoor(Poof/ntio256),Wincom32 and other advanced rootkit malwares when they are already native ?

Finally based on my own experiences(and targeted research/malware hunting etc)i'm seeing a steady increase in patched system files underpinning some current real nasty infections.

How will PrevX react when for example introduced onto a computer where say winlogon.exe/ndis.sys have already been patched by malware.Will it alert to the presence of it(if known variant) and subsequently can it disinfect the file or effect a clean up as such ?

The reason i ask is my *fav* software ticks all but one box there at the moment,i still hope that i can find a software that ticks all the box's but no takers yet(although plenty claim to be using very *advanced* technology ).

TIA

Ade
__________________
Ade Gill
Malwarebytes Researcher