Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #476  
Old August 26th, 2012, 07:24 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.76.

Changes:

+ Added a feature to check for API hooks
+ Added “Launch Custom Applications” feature
+ Added new malware behaviours
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Removed “Launch Internet Explorer” and “Launch Windows Explorer” features
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #477  
Old August 30th, 2012, 08:19 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.77.

Changes:

+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #478  
Old September 1st, 2012, 03:07 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

I did not receive any feedback recently. Nobody is using new versions?
__________________
http://bsa.isoftware.nl
  #479  
Old September 17th, 2012, 07:57 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.78.

Changes:

+ Added a feature to specify report folder in automatic mode
+ Improved “URL Analyzer” feature
+ Improved command line feature
+ Removed “Save Settings on Exit” feature
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #480  
Old September 24th, 2012, 10:47 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.79.

Changes:

+ Added “Edit BSA_USER.DAT” feature
+ Improved typical error problem checkings
+ Udated BSA.DAT
+ Updated LOG_API
+ Updated malware behaviors
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #481  
Old October 12th, 2012, 01:29 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.80.

Changes:

+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Updated “URL Analyzer” feature
+ Udated BSA.DAT
+ Updated LOG_API
+ Updated malware behaviors
+ Updated HexDive
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #482  
Old October 12th, 2012, 02:24 PM
Hillsboro Hillsboro is offline
Regular Poster
 
Join Date: Jul 2006
Location: CH/USA
Posts: 86
Default Re: Buster Sandbox Analyzer

Quote:
Originally Posted by Buster_BSA
Released Buster Sandbox Analyzer 1.80.

Changes:

+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Updated “URL Analyzer” feature
+ Udated BSA.DAT
+ Updated LOG_API
+ Updated malware behaviors
+ Updated HexDive
+ Fixed several bugs

WinRAR shows the archive as corrupted... tried D/L' twice
  #483  
Old October 12th, 2012, 03:56 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

I know the web host is not the best one.

If you are using FireFox use DownThemAll plugin. It should resume if download fails. If you are using any other browser I suggest you use a download manager.

If anyone knows a good host I will be glad to hear about it.
__________________
http://bsa.isoftware.nl
  #484  
Old October 13th, 2012, 12:15 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.81.

Changes:

+ Updated LOG_API
+ Updated “URL Analyzer” feature
+ Updated “Check for Updates” feature
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #485  
Old October 13th, 2012, 12:51 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Meanwhile I do not find a more stable place to host BSA, the package will be actually hosted at http://bsa.xtrweb.com/bsa.rar
__________________
http://bsa.isoftware.nl
  #486  
Old October 28th, 2012, 05:28 PM
FanJ FanJ is offline
Updates Team
 
Join Date: Feb 2002
Posts: 1,804
Default Re: Buster Sandbox Analyzer

Hi Buster_BSA,

Did you see that the Dutch computer magazine c't (not to be confused with ComputerTotaal) has an article about BSA, november 2012. It is now in the shops available; I bought it yesterday.
Whether it is a translation of an article in the German version of c't, I don't know.
I don't see the article online at their site www.ct.nl.
I see only the softlink http://www.ct.nl/softlink/1211072/.

Someone seems to have found an error in the article; see their forum:
http://forum.ct.nl/showthread.php?t=14873

Groet,
Jan
  #487  
Old October 29th, 2012, 07:19 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Yes, I knew about the article. I informed about the mistake in the article to the person that added the entry in the forum and I also mailed to the person who wrote the article.

Thanks for letting me know anyway!
__________________
http://bsa.isoftware.nl
  #488  
Old October 31st, 2012, 08:33 AM
humabajwa humabajwa is offline
Infrequent Poster
 
Join Date: Oct 2012
Location: Pakistan
Posts: 3
Unhappy help needed

i've started using this software and am having a couple of issues. Firstly, the buster doesnt work with code injection and hence doesnt detect it. i really want it to detect not only code injections but also heapsprays. Kindly guide me as to what should i do to embed these features. i cant let my VM security get compromised. i just want the buster to generate a truthful report about the malware even if it involves code injection.
  #489  
Old October 31st, 2012, 08:39 AM
humabajwa humabajwa is offline
Infrequent Poster
 
Join Date: Oct 2012
Location: Pakistan
Posts: 3
Default Re: Buster Sandbox Analyzer

in severe conditions, i can compromise my VMs security just help me!
  #490  
Old October 31st, 2012, 09:47 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: help needed

Quote:
Originally Posted by humabajwa
i've started using this software and am having a couple of issues. Firstly, the buster doesnt work with code injection and hence doesnt detect it. i really want it to detect not only code injections but also heapsprays. Kindly guide me as to what should i do to embed these features. i cant let my VM security get compromised. i just want the buster to generate a truthful report about the malware even if it involves code injection.

From "Pros, contras, warnings and limitations" section of manual:

"Buster Sandbox Analyzer will be unable to watch code injection in certain system processes because they are running out of the sandbox and Sandboxie will not allow it".

You can try running sandboxed usually targeted processes like Internet Explorer and Windows Explorer to see if code injection happens. In order to do this, in automatic mode you would need to enable this feature:

Options > Automatic Analysis Options > Launch Custom Applications

Additionally you must define the list of custom applications to launch. Look the manual to know how to do that.

If you have any other doubt just let me know.
__________________
http://bsa.isoftware.nl
  #491  
Old November 1st, 2012, 02:35 AM
humabajwa humabajwa is offline
Infrequent Poster
 
Join Date: Oct 2012
Location: Pakistan
Posts: 3
Default Re: Buster Sandbox Analyzer

thanks. so do u know of any other tool that can help me detect code injection?
  #492  
Old November 1st, 2012, 04:34 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Quote:
Originally Posted by humabajwa
thanks. so do u know of any other tool that can help me detect code injection?

In BSA you have two binaries: R3S32.EXE and R3S64.EXE

You can use them to detect code injection.
__________________
http://bsa.isoftware.nl
  #493  
Old November 7th, 2012, 02:06 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Did it work?
__________________
http://bsa.isoftware.nl
  #494  
Old November 8th, 2012, 02:21 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Anyone has experience with Androguard under Windows?
__________________
http://bsa.isoftware.nl
  #495  
Old November 23rd, 2012, 02:19 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Today is the third anniversary of first BSA release.
__________________
http://bsa.isoftware.nl
  #496  
Old November 23rd, 2012, 02:39 PM
SLE's Avatar
SLE SLE is offline
Regular Poster
 
Join Date: Jun 2011
Posts: 175
Default Re: Buster Sandbox Analyzer

Quote:
Originally Posted by Buster_BSA
Today is the third anniversary of first BSA release.

Congrats for your nice tool and thanks for permanent improvement!
  #497  
Old November 23rd, 2012, 05:47 PM
roady roady is offline
Regular Poster
 
Join Date: Mar 2005
Posts: 155
Default Re: Buster Sandbox Analyzer

Quote:
Originally Posted by Buster_BSA
Today is the third anniversary of first BSA release.

Thank you for this great SandBoxie addon!
It's not that I use it every hour of the day,but it's great to have when you need it....
__________________
Still trying to find the best protection......
  #498  
Old November 27th, 2012, 02:13 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.82.

Changes:

+ Added a feature to analyze Android applications
+ Added new malware behaviours
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Improved “Run Custom Command On Finish” feature
+ Updated LOG_API
+ Updated HexDive to version 0.6
+ Updated ExeInfo to version 0.0.3.2
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #499  
Old December 2nd, 2012, 05:51 AM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.83.

Changes:

+ Added new malware behaviours
+ Added the possibility of including comments in BSA.DAT
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ Optimized file string search
+ Updated BSA.DAT
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
  #500  
Old December 15th, 2012, 07:25 PM
Buster_BSA Buster_BSA is offline
Frequent Poster
 
Join Date: Nov 2009
Posts: 545
Default Re: Buster Sandbox Analyzer

Released Buster Sandbox Analyzer 1.84.

Changes:

+ Added “[Custom_File_Entries]” section to BSA.DAT
+ Added a feature to extract files from PCap files in automatic mode
+ Added new malware behaviors
+ Included new malware behaviours at “Risk Evaluation Ratings”
+ GUI has been redesigned
+ Updated BSA.DAT
+ Updated LOG_API
+ Fixed several bugs
__________________
http://bsa.isoftware.nl
 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 07:26 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums