Wilders Security Forums  

Go Back   Wilders Security Forums > Security Products > other anti-malware software
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old June 23rd, 2006, 10:45 AM
Chubb's Avatar
Chubb Chubb is offline
Very Frequent Poster
 
Join Date: Aug 2005
Posts: 1,942
Default BitDefender Antirootkit - BETA 1 released

BitDefender Antirootkit - BETA 1 released

BitDefender Antirootkit comes as a separate tool and can be run on Windows XP, Windows 2000 and Windows 2003 (including systems with BitDefender Internet Security v10 installed).
  #2  
Old June 23rd, 2006, 10:57 AM
nadirah nadirah is offline
Massive Poster
 
Join Date: Oct 2003
Posts: 3,647
Default Re: BitDefender Antirootkit - BETA 1 released

any links?
  #3  
Old June 23rd, 2006, 11:50 AM
controler's Avatar
controler controler is offline
Massive Poster
 
Join Date: Jun 2002
Posts: 3,268
Default Bitdefender Antirootkit

Has anybody tried this yet?

controler
  #4  
Old June 23rd, 2006, 12:37 PM
tiagozt's Avatar
tiagozt tiagozt is offline
Frequent Poster
 
Join Date: Feb 2004
Posts: 331
Default Re: BitDefender Antirootkit - BETA 1 released

http://beta.bitdefender.com
__________________
Using:
F-Secure BETA Tester, Opera, Mozilla Thunderbird, FoxIT Reader (The best PDF Reader), GMAIL, utorrent, AIMP

I usually test a lot of AV softwares and my TOP3 are Avira, F-Secure and Kaspersky (not necessarially in that order).

"Everything you say can and WILL BE used against you."
  #5  
Old June 23rd, 2006, 02:33 PM
tansu's Avatar
tansu tansu is offline
Frequent Poster
 
Join Date: Sep 2005
Posts: 210
Default Re: Bitdefender Antirootkit

Yes, Runs fast.
No hidden files so far
Attached Images
 
__________________
Turkish
Redmond, we have problem here!
  #6  
Old June 23rd, 2006, 03:59 PM
controler's Avatar
controler controler is offline
Massive Poster
 
Join Date: Jun 2002
Posts: 3,268
Default Re: Bitdefender Antirootkit

I agree, the scan took a whopping 5 seconds on my system. I guess someone will have to run it on some rootkits to actualy see how it goes.
the two common are HackerDefender and Futo
  #7  
Old June 23rd, 2006, 04:09 PM
tansu's Avatar
tansu tansu is offline
Frequent Poster
 
Join Date: Sep 2005
Posts: 210
Default Re: Bitdefender Antirootkit

I wonder, if it's possible to add BDARK to upcoming BD Internet Security 10? Or are they planning something like this.
__________________
Turkish
Redmond, we have problem here!
  #8  
Old June 23rd, 2006, 04:37 PM
Firecat's Avatar
Firecat Firecat is offline
Incredibly Massive Poster
 
Join Date: Jan 2005
Location: The land of no identity :D
Posts: 7,677
Default Re: Bitdefender Antirootkit

Quote:
Originally Posted by tansu
I wonder, if it's possible to add BDARK to upcoming BD Internet Security 10? Or are they planning something like this.
BitDefender v10 Standard/Pro/Internet Security will have BitDefender Anti-Rootkit technology. I suspect the interface will be different though since the Anti-Rootkit technology has to be integrated with the other components of BitDefender.
__________________
Last edited by Radu : Today, at 5:32 AM. Reason: Found new malicious code

  #9  
Old June 23rd, 2006, 05:16 PM
controler's Avatar
controler controler is offline
Massive Poster
 
Join Date: Jun 2002
Posts: 3,268
Default Re: BitDefender Antirootkit - BETA 1 released

It will be nice to see what other testers have found.

Spanner are you there?

I would like to see some tests on known rootkits.

Then is it a program that will work against unknown rootkits?

controler
  #10  
Old June 24th, 2006, 11:03 AM
Firecat's Avatar
Firecat Firecat is offline
Incredibly Massive Poster
 
Join Date: Jan 2005
Location: The land of no identity :D
Posts: 7,677
Default Re: BitDefender Antirootkit - BETA 1 released

To make things clear, this anti-rootkit exists because BitDefender can only currently detect the rootkit infected files before they have run on the system. BD cannot remove rootkits yet if they are already running.

This Anti-Rootkit module was designed for that job. Detection of unknown rootkits will probably be integrated into the B-HAVE heuristics rather than the anti-rootkit technology.
__________________
Last edited by Radu : Today, at 5:32 AM. Reason: Found new malicious code

  #11  
Old June 24th, 2006, 03:41 PM
lodore lodore is offline
Incredibly Massive Poster
 
Join Date: Jun 2006
Posts: 8,880
Default Re: BitDefender Antirootkit - BETA 1 released

bitdefender are a bit later on using a rootkit scanner because f-secure has included one since f-seure has had black light since the start of f-secure 2006
  #12  
Old June 25th, 2006, 10:32 AM
dallen's Avatar
dallen dallen is offline
Frequent Poster
 
Join Date: May 2003
Location: United States
Posts: 820
Default Re: BitDefender Antirootkit - BETA 1 released

Quote:
Originally Posted by lodore
bitdefender are a bit later on using a rootkit scanner because f-secure has included one since f-seure has had black light since the start of f-secure 2006
The fact that it is "a bit lat(e)" says little about its effectiveness.
  #13  
Old June 25th, 2006, 11:58 AM
muf's Avatar
muf muf is offline
Frequent Poster
 
Join Date: Dec 2003
Location: Manchester, England
Posts: 921
Default Re: BitDefender Antirootkit - BETA 1 released

Just tried it. It sure is fast!
Attached Images
 
  #14  
Old June 25th, 2006, 04:03 PM
starfish_001's Avatar
starfish_001 starfish_001 is offline
Very Frequent Poster
 
Join Date: Jan 2005
Posts: 1,015
Default Re: BitDefender Antirootkit - BETA 1 released

Intersting just ran this - didn't scan inside of my First Defence folder $ISR - I guess it does not look for hidden directories?

No log file created
  #15  
Old June 27th, 2006, 10:38 PM
nicM's Avatar
nicM nicM is offline
nico-nico
 
Join Date: Jul 2004
Location: France
Posts: 631
Default Re: BitDefender Antirootkit - BETA 1 released

I did try it quickly with HackerDefender (default settings), and DBAR beta allows to see the files, the process but I think the GUI could provide more informations :

Here you see the files

http://img319.imageshack.us/img319/1...antirk17vf.jpg


But all you get about hidden processes is their number :

http://img386.imageshack.us/img386/6...antirk31xf.jpg


Then BDAR wants to rename the files :

http://img386.imageshack.us/img386/3...antirk40hh.jpg


And does ask to reboot :

http://img464.imageshack.us/img464/6...antirk59ug.jpg


As expected, the files are renamed/not hidden anymore, and the driver is not loaded either :

http://img464.imageshack.us/img464/403/bdantirk63dp.jpg



I think the "clean" button could show more obviously in the GUI, during the first test I didn't see it , the most obvious button is "next". In fact, this is very close to BlackLight and RootkitRevealer. Personally, I prefer IceSword, more informative, but this one is more like a l"cleaner".

But well, it's seems to be doing the job - although it was not able to see another rootkit, harder to detect..

nicM
__________________
Online Armor
  #16  
Old June 27th, 2006, 11:04 PM
nicM's Avatar
nicM nicM is offline
nico-nico
 
Join Date: Jul 2004
Location: France
Posts: 631
Default Re: BitDefender Antirootkit - BETA 1 released

During another test, it was not able to see process(es) hidden by FU .

Oh, it's still beta - and IceSword doen't see it either.

nicM
__________________
Online Armor
  #17  
Old July 4th, 2006, 12:45 PM
nicM's Avatar
nicM nicM is offline
nico-nico
 
Join Date: Jul 2004
Location: France
Posts: 631
Default Re: BitDefender Antirootkit - BETA 1 released

Beta 2 of BD RU is now available.

nicM
__________________
Online Armor
 

Wilders Security Forums > Security Products > other anti-malware software « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 08:43 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums