Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #26  
Old February 25th, 2012, 01:01 PM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

Quote:
Originally Posted by fredvries
@M00nbl00d:
Reporting/logging/signaling of communication to and from any of the SpyEye, ZeuS or Palevo C&C domains/IPs will hopefully be added in future versions of Mirage Anti-Bot

Thank you.
  #27  
Old February 26th, 2012, 09:23 AM
nikanthpromod's Avatar
nikanthpromod nikanthpromod is offline
Very Frequent Poster
 
Join Date: Oct 2009
Location: India
Posts: 1,368
Default Re: Mirage Anti-Bot 2.0

its continuously updating hosts file...
there should be its own database instead of using Hosts file..
__________________
Windows 7 Home premium x64
WEBROOT Secure Anywhere Complete

  #28  
Old February 27th, 2012, 10:30 AM
fredvries fredvries is offline
Infrequent Poster
 
Join Date: Jun 2003
Posts: 49
Default Re: Mirage Anti-Bot 2.0

@nikanthpromod

Thank you for your comments. We're looking into this problem.
  #29  
Old February 28th, 2012, 12:07 PM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

I think Mirage Anti-Bot should allow the user to specify domain names to be allowed, in case an IP is shared or for some reason a good IP address gets blocked.

It could allow the user to specify the processes that should be allowed connection to that IP, if it matches a given domain name.

The reason for this suggestion is quite simple. I've using ZeuS, SpyEye and Palevo C&C IPs, and today I noticed that abuse.ch Palevo tracker is blocking IP 82.165.47.254 and, surprisingly http://amada.abuse.ch/ is hosted on that IP address.

I wonder how something like that happened. I thought the abuse.ch team/security researcher made sure things like this wouldn't happen?
  #30  
Old March 3rd, 2012, 06:54 AM
nikanthpromod's Avatar
nikanthpromod nikanthpromod is offline
Very Frequent Poster
 
Join Date: Oct 2009
Location: India
Posts: 1,368
Default Re: Mirage Anti-Bot 2.0

a log file with blocked events would be nice.
__________________
Windows 7 Home premium x64
WEBROOT Secure Anywhere Complete

  #31  
Old March 3rd, 2012, 09:01 AM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

Quote:
Originally Posted by nikanthpromod
a log file with blocked events would be nice.

You should drink a stronger coffee. The latest two suggestions you have given, have already been given.

http://www.wilderssecurity.com/showp...5&postcount=10

and

http://www.wilderssecurity.com/showp...3&postcount=17

  #32  
Old March 4th, 2012, 07:49 AM
kupo's Avatar
kupo kupo is online now
Frequent Poster
 
Join Date: Jan 2011
Posts: 919
Default Re: Mirage Anti-Bot 2.0

Feature request (if you are still planning in using hosts file as database):
Apply the hostsoptimizer function as described here -http://forum.abelhadigital.com/viewtopic.php?f=8&t=4&sid=e22263720f67ec6d5fb6ce3abada39fd
It will help prevent slowdowns if the size of the hosts file increase. (eg. database keeps increasing)
EDIT:
Quote:
Originally Posted by fredvries
...Yes, the direct download is via unremote.org...
I can't seem to find the direct download from that site, is MirageAntiBotv10_downloader_by_MirageAntiBotv10.exe the actual installer or a downloader for the actual installer? From the name, it is a downloader right?
__________________
Do not feed the trolls!

Last edited by kupo : March 4th, 2012 at 08:01 AM.
  #33  
Old March 9th, 2012, 02:03 AM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: Mirage Anti-Bot 2.0

Hitman Pro indicates its a trojan. Mamutu - nothing. I deleted it from my PC - I thought, but according Hitman its still there. How do I get rid of it while waiting for a version that has an uninstaller?
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #34  
Old March 17th, 2012, 02:19 PM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: Mirage Anti-Bot 2.0

Latest news on Mirage? Very silent - project gone to sleep? Should I just press "Remove" on the file or is there a removal tool I should use?

Best Regards
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #35  
Old March 17th, 2012, 02:31 PM
atlantis's Avatar
atlantis atlantis is offline
Infrequent Poster
 
Join Date: Nov 2006
Posts: 20
Default Re: Mirage Anti-Bot 2.0

Mirage Anti-Bot 2.0 cause problem (freezing) when I shut down win xp .
  #36  
Old March 17th, 2012, 02:36 PM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

Quote:
Originally Posted by Rivalen
Latest news on Mirage? Very silent - project gone to sleep? Should I just press "Remove" on the file or is there a removal tool I should use?

Best Regards

Not sure about the latest news... but part of the protection is now gone. abuse.ch Malware Database (AMaDa) has been discontinued. That includes the Palevo tracker. I don't know if it's still possible for Mirage Anti-Bot to use such data?

-http://amada.abuse.ch/servers.php

AMaDa has been discontinued.
  #37  
Old March 17th, 2012, 04:42 PM
fredvries fredvries is offline
Infrequent Poster
 
Join Date: Jun 2003
Posts: 49
Default Re: Mirage Anti-Bot 2.0

The project is certainly not discontinued.

Yes, we know about the tweet/mail from abuse.ch that one of three lists is discontinued but we strive to keep Mirage as useful as possible.
  #38  
Old April 17th, 2012, 06:01 PM
Rivalen Rivalen is offline
Frequent Poster
 
Join Date: Oct 2005
Posts: 413
Default Re: Mirage Anti-Bot 2.0

How do I remove/uninstall this Mirage. It seems I cant find it on my PC.

Best Regards
__________________
Thomson router - Win7 64bit - Windows FW - IE8 - UAC (set to max) - LUA - EMET (with internet facing apps added) - Free Sandboxie (Experimental is on) - Free Antivir (with Block Autostart and Windows host file protection ticked) - Roboform Pro
  #39  
Old October 6th, 2012, 04:23 PM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

There's been quite sometime... Any news about a new version, or is it pretty much a dead project?
  #40  
Old October 7th, 2012, 01:06 PM
fredvries fredvries is offline
Infrequent Poster
 
Join Date: Jun 2003
Posts: 49
Default Re: Mirage Anti-Bot 2.0

@m00nbl00d

No, the project isn't dead an we expect an update as soon as possible. The name might change to Phrozen Anti-Bot.
  #41  
Old October 7th, 2012, 04:56 PM
m00nbl00d m00nbl00d is offline
Incredibly Massive Poster
 
Join Date: Jan 2009
Posts: 6,457
Default Re: Mirage Anti-Bot 2.0

Quote:
Originally Posted by fredvries
@m00nbl00d

No, the project isn't dead an we expect an update as soon as possible. The name might change to Phrozen Anti-Bot.

Thanks. But, the name might be a bit unfortunate. Phrozen (read Frozen) Anti-Bot. Maybe a name without Phrozen in it.

Well, it's a catchy name... but, it may not be the most appropriate name for a security application. But, who knows. lol
  #42  
Old January 30th, 2013, 07:48 AM
fredvries fredvries is offline
Infrequent Poster
 
Join Date: Jun 2003
Posts: 49
Default Re: Mirage Anti-Bot 2.0

Mirage Anti-Bot 3.0 has been released.

[x] Recoded from the ground up
[x] Logs blocked events/sites
[x] You can now add your own sites to block

More info and download here.
  #43  
Old February 1st, 2013, 05:56 PM
Bodhitree's Avatar
Bodhitree Bodhitree is offline
Frequent Poster
 
Join Date: Dec 2012
Posts: 567
Default Re: Mirage Anti-Bot 2.0

Ooops..
Attached Thumbnails
Click image for larger version

Name:	oops.jpg
Views:	1
Size:	94.4 KB
ID:	236576  

 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 11:36 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums